Back

HIGH

TIBCO EBX Add-ons Cross Site Scripting (XSS) Vulnerability

Published Feb 22, 2023

Description

The server component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains an easily exploitable vulnerability that allows a low privileged attacker with network access to execute stored XSS on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions 5.6.0 and below.

Affected products

Remediation

Vendor solution

TIBCO has released updated versions of the affected components which address these issues.

TIBCO EBX Add-ons versions 5.6.0 and below: update to version 5.6.1 or later

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner tibco
Published Feb 22, 2023
Updated Aug 3, 2024
Reserved Sep 26, 2022
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner tibco
Published Feb 22, 2023
Updated Aug 3, 2024
Exploited since n/a
EUVD-2022-44758