First published: Thu May 25 2023(Updated: )
The server component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains an exploitable vulnerability that allows an attacker to upload files to a directory accessible by the web server. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions 4.5.16 and below.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO EBX Add-ons | <4.5.17 |
TIBCO has released updated versions of the affected components which address these issues. TIBCO EBX Add-ons versions 4.5.16 and below: update to version 4.5.17 or later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-26216.
The severity of CVE-2023-26216 is critical with a severity value of 7.2.
The affected software versions for CVE-2023-26216 are TIBCO EBX Add-ons versions 4.5.16 and below.
The vulnerability allows an attacker to upload files to a directory accessible by the web server.
More information can be found at the following link: https://www.tibco.com/services/support/advisories