1 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

08 Aug 2018 — The BusinessWorks engine component of TIBCO Software Inc.'s TIBCO ActiveMatrix BusinessWorks, TIBCO ActiveMatrix BusinessWorks for z/Linux, and TIBCO ActiveMatrix BusinessWorks Distribution for TIBCO Silver Fabric contains a vulnerability that may allow XML eXternal Entity (XXE) attacks via incoming network messages, and may disclose the contents of files accessible to a running BusinessWorks engine Affected releases are TIBCO Software Inc. TIBCO ActiveMatrix BusinessWorks: versions up to and including 5.13... • http://www.securityfocus.com/bid/105043 • CWE-611: Improper Restriction of XML External Entity Reference •