Session fixation vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers to hijack web sessions via unspecified vectors.
References
Link | Resource |
---|---|
http://www.tibco.com/multimedia/spotfire_advisory_20110831_tcm8-14230.txt | Vendor Advisory |
http://secunia.com/advisories/45864 | Vendor Advisory |
http://www.tibco.com/services/support/advisories/default.jsp | Vendor Advisory |
http://www.securitytracker.com/id?1025999 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-09-02 09:55
Updated : 2011-09-22 20:34
NVD link : CVE-2011-3133
Mitre link : CVE-2011-3133
JSON object : View
CWE
Products Affected
tibco
- spotfire_server
- spotfire_analytics_server