4.3

CVE-2011-2021

Session fixation vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to hijack web sessions via unspecified vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TibcoIprocess Engine Version <= 11.1.2
TibcoIprocess Engine Version10.3.0
TibcoIprocess Engine Version10.3.1
TibcoIprocess Engine Version10.3.2
TibcoIprocess Engine Version10.3.3
TibcoIprocess Engine Version10.3.4
TibcoIprocess Engine Version10.3.5
TibcoIprocess Engine Version10.4
TibcoIprocess Engine Version10.4.1
TibcoIprocess Engine Version10.5
TibcoIprocess Engine Version10.6
TibcoIprocess Engine Version10.6.0
TibcoIprocess Engine Version10.6.1
TibcoIprocess Engine Version10.6.2
TibcoIprocess Engine Version11.0
TibcoIprocess Engine Version11.1.1
TibcoIprocess Workspace Version <= 11.3
TibcoIprocess Workspace Version11.0
TibcoIprocess Workspace Version11.1
TibcoIprocess Workspace Version11.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.68% 0.691
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N