Products | Versions |
---|---|
TIBCO BusinessConnect | 7.3.0 |
TIBCO BusinessConnect Stored XSS Vulnerability
Original release date: February 22, 2023
Last revised: ---
Source: TIBCO Software Inc.
Description
The component listed above contains an easily exploitable vulnerability that
allows a low privileged attacker with network access to execute a cross-site
scripting (XSS) attack on the affected system.
Impact
Successful execution of this attack could result in the ability to perform
actions within the context of another user including reading, updating,
inserting, or deleting data accessible to TIBCO BusinessConnect.
CVSS v3.1 Base Score: 7.3 (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N)