Tibco Runtime Agent vulnerabilities
9 known vulnerabilities affecting tibco/runtime_agent.
Total CVEs
9
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH4MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-26219HIGHCVSS 8.8fixed in 5.12.32023-10-25
CVE-2023-26219 [HIGH] CWE-798 CVE-2023-26219: The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribut
The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain credentials used to access associ
nvd
CVE-2021-28827CRITICALCVSS 9.6≤ 5.10.2v5.11.0+1 more2021-04-20
CVE-2021-28827 [CRITICAL] CWE-79 CVE-2021-28827: The Administration GUI component of TIBCO Software Inc.'s TIBCO Administrator - Enterprise Edition,
The Administration GUI component of TIBCO Software Inc.'s TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator - Enterprise Edition for z/Linu
nvd
CVE-2018-5434MEDIUMCVSS 6.5≤ 5.9.1≤ 5.10.02018-06-13
CVE-2018-5434 [MEDIUM] CWE-611 CVE-2018-5434: The TIBCO Designer component of TIBCO Software Inc.'s TIBCO Runtime Agent, and TIBCO Runtime Agent f
The TIBCO Designer component of TIBCO Software Inc.'s TIBCO Runtime Agent, and TIBCO Runtime Agent for z/Linux contains vulnerabilities wherein a malicious user could perform XML external entity expansion (XXE) attacks to disclose host machine information. Affected releases are TIBCO Software Inc.'s TIBCO Runtime Agent: versions up to and including 5.
nvd
CVE-2011-0649HIGHCVSS 7.2v5.6.2v5.7.02011-02-04
CVE-2011-0649 [HIGH] CVE-2011-0649: Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Ser
Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Service (EMS) 5.1.0 through 6.0.0, Runtime Agent (TRA) 5.6.2 through 5.7.0, Silver BPM Service before 1.0.4, Silver CAP Service vebefore 1.0.2, and Silver BusinessWorks Service 1.0.0, when running on Unix systems, allow local users to gain root privileges via unknow
nvd
CVE-2010-0184HIGHCVSS 7.2≤ 5.6.1v5.4.0+3 more2010-01-14
CVE-2010-0184 [HIGH] CWE-264 CVE-2010-0184: The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime A
The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via u
nvd
CVE-2008-3338CRITICALCVSS 10.0≤ 5.5.4v5.3+1 more2008-08-13
CVE-2008-3338 [CRITICAL] CWE-119 CVE-2008-3338: Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkh
Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBCO Hawk before 4.8.1; Runtime Agent (TRA) before 5.6.0; iProcess Engine 10.3.0 through 10.6.2 and 11.0.0; and Mainframe Service Tracker before 1.1.0 might allow remote attackers to execute arbitrary code via a crafted message.
nvd
CVE-2008-1703CRITICALCVSS 9.3≤ 5.5.42008-04-11
CVE-2008-1703 [CRITICAL] CWE-119 CVE-2008-1703: Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO produ
Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO products, allow remote attackers to execute arbitrary code via a crafted message.
nvd
CVE-2006-2830HIGHCVSS 7.5v5.32006-06-05
CVE-2006-2830 [HIGH] CVE-2006-2830: Buffer overflow in TIBCO Rendezvous before 7.5.1, TIBCO Runtime Agent (TRA) before 5.4, and Hawk bef
Buffer overflow in TIBCO Rendezvous before 7.5.1, TIBCO Runtime Agent (TRA) before 5.4, and Hawk before 4.6.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the HTTP administrative interface.
nvd
CVE-2006-2829MEDIUMCVSS 6.8v5.32006-06-05
CVE-2006-2829 [MEDIUM] CVE-2006-2829: Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (
Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (TRA) before 5.4 allows authenticated users to execute arbitrary code via the configuration for tibhawkhma.
nvd