CVE-2023-26219
TIBCO Operational Intelligence Hawk RedTail Credential Exposure Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain credentials used to access associated EMS servers. Affected releases are TIBCO Software Inc.'s TIBCO Hawk: versions 6.2.2 and below, TIBCO Hawk Distribution for TIBCO Silver Fabric: versions 6.2.2 and below, TIBCO Operational Intelligence Hawk RedTail: versions 7.2.1 and below, and TIBCO Runtime Agent: versions 5.12.2 and below.
Los componentes Hawk Console y Hawk Agent de TIBCO Hawk de TIBCO Software Inc., TIBCO Hawk Distribution para TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail y TIBCO Runtime Agent contienen una vulnerabilidad que teóricamente permite a un atacante acceder al log de Hawk Console y Hawk Agent para obtener las credenciales utilizadas para acceder a los servidores EMS asociados. Las versiones afectadas son TIBCO Hawk de TIBCO Software Inc.: versiones 6.2.2 y siguientes, TIBCO Hawk Distribution para TIBCO Silver Fabric: versiones 6.2.2 y siguientes, TIBCO Operational Intelligence Hawk RedTail: versiones 7.2.1 y siguientes y TIBCO Runtime Agente: versiones 5.12.2 y anteriores.
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2023-02-20 CVE Reserved
- 2023-10-24 CVE Published
- 2024-09-11 CVE Updated
- 2024-10-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-798: Use of Hard-coded Credentials
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.tibco.com/services/support/advisories | 2023-11-02 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Tibco Search vendor "Tibco" | Hawk Search vendor "Tibco" for product "Hawk" | < 6.2.3 Search vendor "Tibco" for product "Hawk" and version " < 6.2.3" | - |
Affected
| ||||||
Tibco Search vendor "Tibco" | Hawk Distribution For Tibco Silver Fabric Search vendor "Tibco" for product "Hawk Distribution For Tibco Silver Fabric" | < 6.2.3 Search vendor "Tibco" for product "Hawk Distribution For Tibco Silver Fabric" and version " < 6.2.3" | - |
Affected
| ||||||
Tibco Search vendor "Tibco" | Operational Intelligence Hawk Redtail Search vendor "Tibco" for product "Operational Intelligence Hawk Redtail" | < 7.2.2 Search vendor "Tibco" for product "Operational Intelligence Hawk Redtail" and version " < 7.2.2" | - |
Affected
| ||||||
Tibco Search vendor "Tibco" | Runtime Agent Search vendor "Tibco" for product "Runtime Agent" | < 5.12.3 Search vendor "Tibco" for product "Runtime Agent" and version " < 5.12.3" | - |
Affected
|