First published: Tue Oct 24 2023(Updated: )
The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain credentials used to access associated EMS servers. Affected releases are TIBCO Software Inc.'s TIBCO Hawk: versions 6.2.2 and below, TIBCO Hawk Distribution for TIBCO Silver Fabric: versions 6.2.2 and below, TIBCO Operational Intelligence Hawk RedTail: versions 7.2.1 and below, and TIBCO Runtime Agent: versions 5.12.2 and below.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO Hawk | <6.2.3 | |
TIBCO Hawk Distribution for TIBCO Silver Fabric | <6.2.3 | |
TIBCO Operational Intelligence Hawk RedTail | <7.2.2 | |
Tibco Runtime Agent | <5.12.3 |
TIBCO has released updated versions of the affected components which address these issues. TIBCO Hawk versions 6.2.2 and below: update to version 6.2.3 or later TIBCO Hawk Distribution for TIBCO Silver Fabric versions 6.2.2 and below: update to version 6.2.3 or later TIBCO Operational Intelligence Hawk RedTail versions 7.2.1 and below: update to version 7.2.2 or later TIBCO Runtime Agent versions 5.12.2 and below: update to version 5.12.3 or later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-26219 is a vulnerability in the Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent.
CVE-2023-26219 has a severity rating of 8.8 (high).
CVE-2023-26219 affects TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent.
To fix CVE-2023-26219, it is recommended to update the affected software to a version higher than 6.2.3 for TIBCO Hawk, 7.2.2 for TIBCO Operational Intelligence Hawk RedTail, and 5.12.3 for TIBCO Runtime Agent.
You can find more information about CVE-2023-26219 on the TIBCO Software Inc. support advisories page.