CVE-2026-3912: TIBCO ActiveMatrix BusinessWorks Injection Vulnerability
Injection vulnerabilities due to validation/sanitisation of user-supplied input in ActiveMatrix BusinessWorks and Enterprise Administrator allows information disclosure, including exposure of accessible local files and host system details, and may allow manipulation of application behaviour.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3912?
CVE-2026-3912 is classified as a high severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2026-3912?
To mitigate CVE-2026-3912, it is recommended to apply the latest security patches provided by TIBCO for ActiveMatrix BusinessWorks and Enterprise Administrator.
What are the potential impacts of CVE-2026-3912?
The potential impacts of CVE-2026-3912 include unauthorized access to sensitive local files and exposure of host system details.
Which software versions are affected by CVE-2026-3912?
CVE-2026-3912 affects TIBCO ActiveMatrix BusinessWorks and TIBCO Enterprise Administrator, but specific version details should be verified with TIBCO advisories.
Is CVE-2026-3912 being actively exploited?
While there is no public information confirming active exploitation of CVE-2026-3912, it is crucial to address the vulnerability promptly to safeguard systems.