7.5

CVE-2014-2544

Unspecified vulnerability in Spotfire Web Player Engine, Spotfire Desktop, and Spotfire Server Authentication Module in TIBCO Spotfire Server 3.3.x before 3.3.4, 4.5.x before 4.5.1, 5.0.x before 5.0.2, 5.5.x before 5.5.1, and 6.x before 6.0.2; Spotfire Professional 4.0.x before 4.0.4, 4.5.x before 4.5.2, 5.0.x before 5.0.2, 5.5.x before 5.5.1, and 6.x before 6.0.1; Spotfire Web Player 4.0.x before 4.0.4, 4.5.x before 4.5.2, 5.0.x before 5.0.2, 5.5.x before 5.5.1, and 6.x before 6.0.1; Spotfire Automation Services 4.0.x before 4.0.4, 4.5.x before 4.5.2, 5.0.x before 5.0.2, 5.5.x before 5.5.1, and 6.x before 6.0.1; Spotfire Deployment Kit 4.0.x before 4.0.4, 4.5.x before 4.5.2, 5.0.x before 5.0.2, 5.5.x before 5.5.1, and 6.x before 6.0.1; Spotfire Desktop 6.x before 6.0.1; and Spotfire Analyst 6.x before 6.0.1 allows remote attackers to execute arbitrary code via unknown vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TibcoWeb Player Version <= 4.0.3
TibcoWeb Player Version4.5.0
TibcoWeb Player Version4.5.1
TibcoWeb Player Version5.0.0
TibcoWeb Player Version5.0.1
TibcoWeb Player Version5.5.0
TibcoWeb Player Version6.0.0
TibcoAutomation Services Version <= 4.0.3
TibcoAutomation Services Version4.5.0
TibcoAutomation Services Version4.5.1
TibcoAutomation Services Version5.0.0
TibcoAutomation Services Version5.0.1
TibcoAutomation Services Version5.5.0
TibcoAutomation Services Version6.0.0
TibcoSpotfire Server Version <= 3.3.3
TibcoSpotfire Server Version4.5.0
TibcoSpotfire Server Version5.0.0
TibcoSpotfire Server Version5.0.1
TibcoSpotfire Server Version5.5.0
TibcoSpotfire Server Version6.0.0
TibcoSpotfire Server Version6.0.1
TibcoSpotfire Professional Version <= 4.0.3
TibcoSpotfire Professional Version4.5.0
TibcoSpotfire Professional Version4.5.1
TibcoSpotfire Professional Version5.0.0
TibcoSpotfire Professional Version5.0.1
TibcoSpotfire Professional Version5.5.0
TibcoSpotfire Professional Version6.0.0
TibcoAnalyst Version <= 6.0.0
TibcoDesktop Version <= 6.0.0
TibcoDeployment Kit Version <= 4.0.3
TibcoDeployment Kit Version4.5.0
TibcoDeployment Kit Version4.5.1
TibcoDeployment Kit Version5.0.0
TibcoDeployment Kit Version5.0.1
TibcoDeployment Kit Version5.5.0
TibcoDeployment Kit Version6.0.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.18% 0.767
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P