Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Analytics Platform for AWS 6.5 and 7.0.x before 7.0.1; Spotfire Automation Services before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Deployment Kit before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Desktop before 6.5.2 and 7.0.x before 7.0.1; Spotfire Desktop Language Packs 7.0.x before 7.0.1; Spotfire Professional before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Web Player before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; and Silver Fabric Enabler for Spotfire Web Player before 2.1.1 allow remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.
References
Link | Resource |
---|---|
http://www.tibco.com/assets/blt1fd126faba191a9f/2015-001-advisory.txt | Vendor Advisory |
http://www.tibco.com/mk/advisory.jsp | Vendor Advisory |
http://www.securitytracker.com/id/1033015 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
Configuration 9 (hide)
|
Information
Published : 2015-07-21 12:59
Updated : 2017-09-20 18:29
NVD link : CVE-2015-4554
Mitre link : CVE-2015-4554
JSON object : View
CWE
Products Affected
tibco
- spotfire_analytics_platform_for_aws
- spotfire_desktop
- spotfire_desktop_language_packs
- silver_fabric_enabler_for_spotfire_webplayer
- spotfire_professional
- spotfire_web_player
- spotfire_analyst
- spotfire_deployment_kit
- spotfire_automation_services