First published: Wed Apr 09 2025(Updated: )
Code Execution via Malicious Files: Attackers can create specially crafted files with embedded code that may execute without adequate security validation, potentially leading to system compromise. Sandbox Bypass Vulnerability: A flaw in the TERR security mechanism allows attackers to bypass sandbox restrictions, enabling the execution of untrusted code without appropriate controls.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO Spotfire Analytics Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3114 has a high severity rating due to its potential to allow code execution through malicious files.
To fix CVE-2025-3114, ensure that you update to the latest version of TIBCO Spotfire, which includes security patches.
CVE-2025-3114 can be exploited by attackers to execute arbitrary code through specially crafted files.
CVE-2025-3114 affects TIBCO Spotfire Analytics Platform, exposing it to potential security risks.
As a temporary workaround for CVE-2025-3114, avoid opening untrusted or unknown files in TIBCO Spotfire.