漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
TIBCO ActiveMatrix BPM Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities
Vulnerability Description
The workspace client, openspace client, app development client, and REST API of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, and TIBCO Silver Fabric Enabler for ActiveMatrix BPM contain cross site scripting (XSS) and cross-site request forgery vulnerabilities. Affected releases are TIBCO Software Inc.'s TIBCO ActiveMatrix BPM: versions up to and including 4.2.0, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric: versions up to and including 4.2.0, and TIBCO Silver Fabric Enabler for ActiveMatrix BPM: versions up to and including 1.4.1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
TIBCO Software TIBCO ActiveMatrix BPM 跨站脚本漏洞
Vulnerability Description
多款TIBCO产品中的workspace、openspace、app development客户端和REST API存在安全漏洞。攻击者可利用该漏洞获取APIs的全部权限。以下产品和受到影响:TIBCO ActiveMatrix BPM 4.2.0及之前版本;TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric 4.2.0及之前版本;TIBCO Silver Fabric Enabler for ActiveMatrix BPM 1.4.1
CVSS Information
N/A
Vulnerability Type
N/A