4.3

CVE-2011-2021

Session fixation vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to hijack web sessions via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
TibcoIprocess Engine Version <= 11.1.2
TibcoIprocess Engine Version10.3.0
TibcoIprocess Engine Version10.3.1
TibcoIprocess Engine Version10.3.2
TibcoIprocess Engine Version10.3.3
TibcoIprocess Engine Version10.3.4
TibcoIprocess Engine Version10.3.5
TibcoIprocess Engine Version10.4
TibcoIprocess Engine Version10.4.1
TibcoIprocess Engine Version10.5
TibcoIprocess Engine Version10.6
TibcoIprocess Engine Version10.6.0
TibcoIprocess Engine Version10.6.1
TibcoIprocess Engine Version10.6.2
TibcoIprocess Engine Version11.0
TibcoIprocess Engine Version11.1.1
TibcoIprocess Workspace Version <= 11.3
TibcoIprocess Workspace Version11.0
TibcoIprocess Workspace Version11.1
TibcoIprocess Workspace Version11.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.68% 0.691
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N