Tibco Activematrix Bpm vulnerabilities

8 known vulnerabilities affecting tibco/activematrix_bpm.

Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2019-8993CRITICALCVSS 9.8≤ 4.2.02019-04-24
CVE-2019-8993 [CRITICAL] CWE-306 CVE-2019-8993: The administrative web server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO Activ The administrative web server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, TIBCO ActiveMatrix Policy Director, TIBCO ActiveMatrix Service Bus, TIBCO ActiveMatrix Service Grid, TIBCO ActiveMatrix Service Grid Distribution for TIBCO Silver Fabric, TIBCO Silver Fabric Enabler fo
nvd
CVE-2019-8992HIGHCVSS 8.8≤ 4.2.02019-04-24
CVE-2019-8992 [HIGH] CWE-434 CVE-2019-8992: The administrative server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMat The administrative server component of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, TIBCO ActiveMatrix Policy Director, TIBCO ActiveMatrix Service Bus, TIBCO ActiveMatrix Service Grid, TIBCO ActiveMatrix Service Grid Distribution for TIBCO Silver Fabric, TIBCO Silver Fabric Enabler for Active
nvd
CVE-2019-8991HIGHCVSS 8.8≤ 4.2.02019-04-24
CVE-2019-8991 [HIGH] CWE-79 CVE-2019-8991: The administrator web interface of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix The administrator web interface of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, TIBCO ActiveMatrix Policy Director, TIBCO ActiveMatrix Service Bus, TIBCO ActiveMatrix Service Grid, TIBCO Silver Fabric Enabler for ActiveMatrix BPM, and TIBCO Silver Fabric Enabler for ActiveMatrix Service Grid co
nvd
CVE-2019-8995MEDIUMCVSS 6.1≤ 4.2.02019-04-24
CVE-2019-8995 [MEDIUM] CWE-601 CVE-2019-8995: The workspace client, openspace client, and app development client of TIBCO Software Inc.'s TIBCO Ac The workspace client, openspace client, and app development client of TIBCO Software Inc.'s TIBCO ActiveMatrix BPM, TIBCO ActiveMatrix BPM Distribution for TIBCO Silver Fabric, and TIBCO Silver Fabric Enabler for ActiveMatrix BPM contain a vulnerability wherein a malicious URL could trick a user into visiting a website of the attacker's choice. Affect
nvd
CVE-2012-0687MEDIUMCVSS 5.0≤ 1.2.0v1.0.1+3 more2012-03-13
CVE-2012-0687 [MEDIUM] CWE-200 CVE-2012-0687: TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWor TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWorks Service Engine before 5.8.2; TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0; TIBCO
nvd
CVE-2012-0689MEDIUMCVSS 5.0v1.0.1v1.0.22012-03-13
CVE-2012-0689 [MEDIUM] CWE-200 CVE-2012-0689: The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribut The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0 allows remote attackers to discover credentials via unspecified vectors.
nvd
CVE-2012-0688MEDIUMCVSS 4.3≤ 1.2.0v1.0.1+3 more2012-03-13
CVE-2012-0688 [MEDIUM] CWE-79 CVE-2012-0688: Cross-site scripting (XSS) vulnerability in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric Activ Cross-site scripting (XSS) vulnerability in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2010-4495CRITICALCVSS 9.0v1.0.1v1.0.22010-12-17
CVE-2010-4495 [CRITICAL] CVE-2010-4495: Unspecified vulnerability in the ActiveMatrix Runtime component in TIBCO ActiveMatrix Service Grid 3 Unspecified vulnerability in the ActiveMatrix Runtime component in TIBCO ActiveMatrix Service Grid 3.0.0, 3.0.1, and 3.1.0; ActiveMatrix Service Bus 3.0.0 and 3.0.1; ActiveMatrix BusinessWorks Service Engine 5.9.0; ActiveMatrix BPM 1.0.1 and 1.0.2; Silver BPM Service 1.0.1; and Silver CAP Service 1.0.0 allows remote authenticated users to execute arbitrary
nvd