Multiple TIBCO Products CVE-2017-5528 Multiple Security Vulnerabilities
BID:100482
Info
Multiple TIBCO Products CVE-2017-5528 Multiple Security Vulnerabilities
| Bugtraq ID: | 100482 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-5528 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 29 2017 12:00AM |
| Updated: | Jun 29 2017 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
TIBCO Jaspersoft Reporting and Analytics for AWS 6.3 TIBCO Jaspersoft Reporting and Analytics for AWS 6.1 TIBCO Jaspersoft for AWS with Multi-Tenancy 6.3 TIBCO Jaspersoft for AWS with Multi-Tenancy 6.1 TIBCO JasperReports Server for ActiveMatrix BPM 6.2 TIBCO JasperReports Server for ActiveMatrix BPM 6.1.1 TIBCO JasperReports Server for ActiveMatrix BPM 5.6.1 TIBCO JasperReports Server Community Edition 6.3 TIBCO JasperReports Server Community Edition 6.2 TIBCO JasperReports Server Community Edition 6.1 TIBCO JasperReports Server Community Edition 6.0.1 TIBCO JasperReports Server Community Edition 5.6 TIBCO JasperReports Server Community Edition 5.5 TIBCO JasperReports Server Community Edition 5.2 TIBCO JasperReports Server Community Edition 4.2.1 TIBCO JasperReports Server Community Edition 3.7 TIBCO JasperReports Server 6.3 TIBCO JasperReports Server 6.2.1 TIBCO JasperReports Server 6.2 TIBCO JasperReports Server 6.1.1 TIBCO JasperReports Server 6.1 |
| Not Vulnerable: |
TIBCO Jaspersoft Reporting and Analytics for AWS 6.4 TIBCO Jaspersoft for AWS with Multi-Tenancy 6.4 TIBCO JasperReports Server for ActiveMatrix BPM 6.4 TIBCO JasperReports Server Community Edition 6.4 TIBCO JasperReports Server 6.3.2 TIBCO JasperReports Server 6.2.3 TIBCO JasperReports Server 6.1.2 |
Exploit / POC
Multiple TIBCO Products CVE-2017-5528 Multiple Security Vulnerabilities
To exploit these issues an attacker must entice an unsuspecting victim to open a malicious URI.
To exploit these issues an attacker must entice an unsuspecting victim to open a malicious URI.
References
Multiple TIBCO Products CVE-2017-5528 Multiple Security Vulnerabilities
References:
References: