Multiple TIBCO Products CVE-2014-2541 Security Bypass Vulnerability
BID:66735
Info
Multiple TIBCO Products CVE-2014-2541 Security Bypass Vulnerability
| Bugtraq ID: | 66735 |
| Class: | Design Error |
| CVE: |
CVE-2014-2541 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 08 2014 12:00AM |
| Updated: | Apr 08 2014 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
TIBCO TIBCO Substation ES 2.4 TIBCO TIBCO Substation ES 2.3 TIBCO Substation ES 2.8 TIBCO Rendezvous 8.4.1 TIBCO Rendezvous 8.3 TIBCO Rendezvous 8.2.9 TIBCO Rendezvous 8.2.8 TIBCO Rendezvous 8.2.7 TIBCO Rendezvous 8.2.6 TIBCO Rendezvous 8.2.5 TIBCO Rendezvous 8.2.4 TIBCO Rendezvous 8.2.3 TIBCO Rendezvous 8.2.2 TIBCO Rendezvous 8.2.1 TIBCO Rendezvous 8.0.1 TIBCO Rendezvous 7.5.4 TIBCO Rendezvous 7.5.3 TIBCO Rendezvous 7.5.2 TIBCO Rendezvous 7.5.1 TIBCO Rendezvous 7.4.11 TIBCO Rendezvous 5.6.4 TIBCO Rendezvous 5.6.3 TIBCO Rendezvous 8.3.1 TIBCO Rendezvous 8.0 TIBCO Messaging Appliance 8.7 |
| Not Vulnerable: |
TIBCO Substation ES 2.8.1 TIBCO Rendezvous 8.4.2 TIBCO Messaging Appliance 8.7.1 |
Discussion
Multiple TIBCO Products CVE-2014-2541 Security Bypass Vulnerability
Multiple TIBCO Products are prone to a security bypass vulnerability.
Attackers can exploit this issue to bypass security restrictions to perform unauthorized actions; this may aid in launching further attacks.
The following products are vulnerable:
TIBCO Rendezvous 8.4.1 and prior
TIBCO Messaging Appliance 8.7.0 and prior
TIBCO Substation ES 2.8.0 and prior
Multiple TIBCO Products are prone to a security bypass vulnerability.
Attackers can exploit this issue to bypass security restrictions to perform unauthorized actions; this may aid in launching further attacks.
The following products are vulnerable:
TIBCO Rendezvous 8.4.1 and prior
TIBCO Messaging Appliance 8.7.0 and prior
TIBCO Substation ES 2.8.0 and prior