CVE Published: 13/12/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: tibco |
Vendor: TIBCO Software Inc. |
Product: tibbr Community Status : PUBLISHED
CVE-2017-5534 Description
The tibbr user profiles components of tibbr Community, and tibbr Enterprise expose a weakness in an improperly sandboxed third-party component. Affected releases are TIBCO Software Inc. tibbr Community 5.2.1 and below; 6.0.0; 6.0.1; 7.0.0, tibbr Enterprise 5.2.1 and below; 6.0.0; 6.0.1; 7.0.0.
CWE-ID: CWE Name: The impact of this vulnerability includes the ability to execute arbitrary code with the privileges of the user that invoked the tibbr server. Source: TIBCO Software Inc.
Common Attack Pattern Enumeration and Classification (CAPEC)