CVE-2019-8994
TIBCO ActiveMatrix BPM Escalation of Privileges Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The workspace client of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, and TIBCO Silver Fabric Enabler for ActiveMatrix BPM contains vulnerabilities where an authenticated user can change settings that can theoretically adversely impact other users. Affected releases are TIBCO Software Inc.'s TIBCO ActiveMatrix BPM: versions up to and including 4.2.0, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric: versions up to and including 4.2.0, and TIBCO Silver Fabric Enabler for ActiveMatrix BPM: versions up to and including 1.4.1.
El cliente de espacio de trabajo de TIBCO Software Inc., TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution para TIBCO Silver Fabric y TIBCO Silver Fabric Enabler para ActiveMatrix BPM, contiene vulnerabilidades en las que un usuario autenticado puede cambiar la configuraciĆ³n que teĆ³ricamente puede afectar negativamente a otros usuarios. Las versiones afectadas son TIBCO Software Inc.'s TIBCO ActiveMatrix BPM: versiones hasta 4.2.0 inclusive, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric: versiones hasta 4.2.0 inclusive, y TIBCO Silver Fabric Enabler for ActiveMatrix BPM: versiones hasta 1.4.1 inclusive.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-02-21 CVE Reserved
- 2019-04-24 CVE Published
- 2024-04-17 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/108060 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Tibco Search vendor "Tibco" | Activematrix Business Process Management Search vendor "Tibco" for product "Activematrix Business Process Management" | <= 4.2.0 Search vendor "Tibco" for product "Activematrix Business Process Management" and version " <= 4.2.0" | - |
Affected
| ||||||
Tibco Search vendor "Tibco" | Activematrix Business Process Management Search vendor "Tibco" for product "Activematrix Business Process Management" | <= 4.2.0 Search vendor "Tibco" for product "Activematrix Business Process Management" and version " <= 4.2.0" | silver_fabric |
Affected
| ||||||
Tibco Search vendor "Tibco" | Silver Fabric Enabler Search vendor "Tibco" for product "Silver Fabric Enabler" | <= 1.4.1 Search vendor "Tibco" for product "Silver Fabric Enabler" and version " <= 1.4.1" | activematrix_bpm |
Affected
|