CVE Published: 13/11/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: tibco |
Vendor: TIBCO Software Inc. |
Product: TIBCO DataSynapse GridServer Manager Status : PUBLISHED
CVE-2018-12416 Description
The GridServer Broker and GridServer Director components of TIBCO Software Inc.\'s TIBCO DataSynapse GridServer Manager contain vulnerabilities which may allow an unauthenticated user to perform cross-site request forgery (CSRF). Affected releases are TIBCO Software Inc. TIBCO DataSynapse GridServer Manager: versions up to and including 5.2.0; 6.0.0; 6.0.1; 6.0.2; 6.1.0; 6.1.1; 6.2.0; 6.3.0.
CWE-ID: CWE Name: The impact of this vulnerability includes the theoretical possibility that a malicious actor could gain full access to the web interface of the affected components. Source: TIBCO Software Inc.
Common Attack Pattern Enumeration and Classification (CAPEC)