CVE-2019-8992 — Unrestricted File Upload in Software INC Tibco Activematrix BPM
Severity
8.8HIGHNVD
EPSS
0.7%
top 26.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 24
Latest updateMay 24
Description
The administrative server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, TIBCO ActiveMatrix Policy Director, TIBCO ActiveMatrix Service Bus, TIBCO ActiveMatrix Service Grid, TIBCO ActiveMatrix Service Grid Distribution for TIBCO Silver Fabric, TIBCO Silver Fabric Enabler for ActiveMatrix BPM, and TIBCO Silver Fabric Enabler for ActiveMatrix Service Grid contains a vulnerability wherein a user without privileges to upload di…
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages13 packages
▶CVEListV5tibco_software_inc/tibco_silver_fabric_enabler_for_activematrix_service_gridunspecified — 1.3.1
▶CVEListV5tibco_software_inc/tibco_activematrix_service_grid_distribution_for_tibco_silver_fabricunspecified — 3.3.0
▶CVEListV5tibco_software_inc/tibco_activematrix_bpm_distribution_for_tibco_silver_fabricunspecified — 4.2.0