CVE-2022-41564: TIBCO Operational Intelligence Hawk Redtail Credential Exposure Vulnerability
The Hawk Console component of TIBCO Software Inc.'s TIBCO Hawk and TIBCO Operational Intelligence Hawk RedTail contains a vulnerability that will return the EMS transport password and EMS SSL password to a privileged user. Affected releases are TIBCO Software Inc.'s TIBCO Hawk: versions 6.1.0 through 6.2.1 and TIBCO Operational Intelligence Hawk RedTail: versions 7.0.0 through 7.2.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-41564?
CVE-2022-41564 is a vulnerability in the Hawk Console component of TIBCO Hawk and TIBCO Operational Intelligence Hawk RedTail that allows a privileged user to access EMS transport and EMS SSL passwords.
Which software versions are affected by CVE-2022-41564?
The affected versions are TIBCO Hawk 6.1.0 through 6.2.2 and TIBCO Operational Intelligence Hawk RedTail 7.0.0 through 7.2.1.
What is the severity of CVE-2022-41564?
The severity of CVE-2022-41564 is medium with a CVSS score of 6.5.
How can I fix CVE-2022-41564?
To fix CVE-2022-41564, it is recommended to upgrade to a version of TIBCO Hawk or TIBCO Operational Intelligence Hawk RedTail that is not affected by this vulnerability.
Where can I find more information about CVE-2022-41564?
More information about CVE-2022-41564 can be found at the following URL: [https://www.tibco.com/services/support/advisories](https://www.tibco.com/services/support/advisories)