9.8
CVSSv3

CVE-2023-29268

Published: 26/04/2023 Updated: 09/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Splus Server component of TIBCO Software Inc.'s TIBCO Spotfire Statistics Services contains a vulnerability that allows an unauthenticated remote malicious user to upload or modify arbitrary files within the web server directory on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Statistics Services: versions 11.4.10 and below, versions 11.5.0, 11.6.0, 11.6.1, 11.6.2, 11.7.0, 11.8.0, 11.8.1, 12.0.0, 12.0.1, and 12.0.2, versions 12.1.0 and 12.2.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tibco spotfire statistics services 11.6.0

tibco spotfire statistics services 11.6.1

tibco spotfire statistics services 11.6.2

tibco spotfire statistics services 11.7.0

tibco spotfire statistics services 11.8.0

tibco spotfire statistics services 11.8.1

tibco spotfire statistics services 12.0.0

tibco spotfire statistics services 12.0.1

tibco spotfire statistics services 12.0.2

tibco spotfire statistics services 12.1.0

tibco spotfire statistics services 12.2.0

tibco spotfire statistics services 11.5.0

tibco spotfire statistics services