First published: Tue Mar 12 2024(Updated: )
The FTL Server component of TIBCO Software Inc.'s TIBCO FTL - Enterprise Edition contains a vulnerability that allows a low privileged attacker with network access to execute a privilege escalation on the affected ftlserver. Affected releases are TIBCO Software Inc.'s TIBCO FTL - Enterprise Edition: versions 6.10.1 and below.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO FTL | <=6.10.1 |
TIBCO has released updated versions of the affected components which address these issues. TIBCO FTL - Enterprise Edition versions 6.10.1 and below: update to version 6.10.2 or later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-1138 is classified as a privilege escalation vulnerability that poses a significant security risk to affected systems.
To fix CVE-2024-1138, update TIBCO FTL - Enterprise Edition to version 6.10.2 or later as per available security patches.
CVE-2024-1138 affects TIBCO FTL - Enterprise Edition versions up to and including 6.10.1.
Any user of TIBCO FTL - Enterprise Edition with a version prior to 6.10.2 is potentially affected by CVE-2024-1138.
CVE-2024-1138 allows a low privileged attacker with network access to execute privilege escalation on the affected ftlserver.