5.4
CVSSv3

CVE-2017-5536

Published: 01/05/2018 Updated: 09/10/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

The GridServer Broker, and GridServer Director components of TIBCO Software Inc. TIBCO DataSynapse GridServer Manager contain vulnerabilities which may allow an authenticated user to perform cross-site scripting (XSS). In addition, an authenticated user could be a victim of a cross-site request forgery (CSRF) attack. Affected releases include TIBCO Software Inc.'s TIBCO DataSynapse GridServer Manager: versions up to and including 5.1.3; 6.0.0; 6.0.1; 6.0.2; 6.1.0; 6.1.1; and 6.2.0.

Vulnerable Product Search on Vulmon Subscribe to Product

tibco datasynapse gridserver manager 6.0.0

tibco datasynapse gridserver manager 6.0.1

tibco datasynapse gridserver manager 6.0.2

tibco datasynapse gridserver manager 6.1.0

tibco datasynapse gridserver manager

tibco datasynapse gridserver manager 6.1.1

tibco datasynapse gridserver manager 6.2.0