QID 375697

Date Published: 2021-08-24

QID 375697: TIBCO FTL Multiple Vulnerabilities (TIBCO FTL - 2021-28819 and TIBCO FTL - 2021-28820)

TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert malicious software.

Affected Version:
TIBCO FTL - Community Edition versions 6.5.0 and below

QID Detection Logic(Authenticated)
This QID checks for the vulnerable version of TIBCO FTL on system

Successful exploitation of these vulnerabilities can allow attackers to execute the malicious software inserted by the attacker with the elevated privileges of the component.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.2 severity.
  • Solution
    The vendor has released updates to fix the vulnerabilities. Please refer to TIBCO FTL - 2021-28819and TIBCO FTL - 2021-28820 for details.

    CVEs related to QID 375697

    Software Advisories
    Advisory ID Software Component Link
    TIBCO FTL - 2021-28819 URL Logo www.tibco.com/support/advisories/2021/03/tibco-security-advisory-march-23-2021-tibco-ftl-2021-28819
    TIBCO FTL - 2021-28820 URL Logo www.tibco.com/support/advisories/2021/03/tibco-security-advisory-march-23-2021-tibco-ftl-2021-28820