6.5
CVE-2022-30570
- EPSS 0.28%
- Veröffentlicht 19.07.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 07:02:57
- Quelle security@tibco.com
- CVE-Watchlists
- Unerledigt
TIBCO Data Virtualization Access Control Vulnerability
The Column Based Security component of TIBCO Software Inc.'s TIBCO Data Virtualization and TIBCO Data Virtualization for AWS Marketplace contains an easily exploitable vulnerability that allows a low privileged attacker with network access to obtain read access to application information on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Data Virtualization: versions 8.5.2 and below and TIBCO Data Virtualization for AWS Marketplace: versions 8.5.2 and below.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tibco ≫ Data Virtualization Version <= 8.5.2
Tibco ≫ Data Virtualization For Aws Marketplace Version <= 8.5.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.28% | 0.514 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| security@tibco.com | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|