Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
237 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 0.84% | — | Tibco Administrator | 20/4/2021 | 17/6/2026 | The Administration GUI component of TIBCO Software Inc.'s TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator… | |
| Modificada | Crítica (9.6) | 1.1% | — | Tibco AdministratorTibco Runtime Agent | 20/4/2021 | 17/6/2026 | The Administration GUI component of TIBCO Software Inc.'s TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator - Enterprise Edition Distribution for TIBCO Silver Fabric, TIBCO Administrator… | |
| Modificada | Alta (7.8) | 0.23% | — | Tibco Messaging - Eclipse Mosquitto Distribution - Bridge | 14/4/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Community Edition and TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on… | |
| Modificada | Alta (7.8) | 0.23% | — | Tibco Messaging - Eclipse Mosquitto Distribution - Core | 14/4/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Community Edition and TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some… | |
| Modificada | Alta (8.8) | 0.22% | — | Tibco Activespaces | 23/3/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO ActiveSpaces - Community Edition, TIBCO ActiveSpaces - Developer Edition, and TIBCO ActiveSpaces - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows… | |
| Modificada | Alta (7.8) | 0.22% | — | Tibco Eftl | 23/3/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO eFTL - Community Edition, TIBCO eFTL - Developer Edition, and TIBCO eFTL - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert… | |
| Modificada | Alta (7.8) | 0.25% | — | Tibco Enterprise Message Service | 23/3/2021 | 17/6/2026 | The Enterprise Message Service Server (tibemsd), Enterprise Message Service Central Administration (tibemsca), Enterprise Message Service JSON configuration generator (tibemsconf2json), and Enterprise Message Service C API components of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Enterprise Message… | |
| Modificada | Alta (7.8) | 0.22% | — | Tibco Enterprise Message Service | 23/3/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Enterprise Message Service - Community Edition, and TIBCO Enterprise Message Service - Developer Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of… | |
| Modificada | Alta (7.8) | 0.25% | — | Tibco FTL | 23/3/2021 | 17/6/2026 | The FTL Server (tibftlserver), FTL C API, FTL Golang API, FTL Java API, and FTL .Net API components of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TIBCO FTL - Enterprise Edition contain a vulnerability that theoretically allows a low privileged attacker with local access on… | |
| Modificada | Alta (7.8) | 0.23% | — | Tibco FTL | 23/3/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TIBCO FTL - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert… | |
| Modificada | Alta (7.8) | 0.25% | — | Tibco Rendezvous | 23/3/2021 | 17/6/2026 | The Rendezvous Routing Daemon (rvrd), Rendezvous Secure Routing Daemon (rvrsd), Rendezvous Secure Daemon (rvsd), Rendezvous Cache (rvcache), Rendezvous Secure C API, Rendezvous Java API, and Rendezvous .Net API components of TIBCO Software Inc.'s TIBCO Rendezvous and TIBCO Rendezvous Developer Edition contain a… | |
| Modificada | Alta (7.8) | 0.25% | — | Tibco Rendezvous | 23/3/2021 | 17/6/2026 | The Windows Installation component of TIBCO Software Inc.'s TIBCO Rendezvous and TIBCO Rendezvous Developer Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert malicious software. The affected component can be… | |
| Modificada | Crítica (9.8) | 1.2% | — | Tibco API Exchange GatewayTibco API Exchange Gateway Distribution | 23/3/2021 | 17/6/2026 | The Config UI component of TIBCO Software Inc.'s TIBCO API Exchange Gateway and TIBCO API Exchange Gateway Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically allows an unauthenticated attacker with network access to execute a clickjacking attack on the affected system. A successful attack… | |
| Modificada | Media (5.4) | 0.66% | — | Tibco Analytics PlatformTibco Spotfire AnalystTibco Spotfire DesktopTibco Spotfire Server | 9/3/2021 | 17/6/2026 | The Spotfire client component of TIBCO Software Inc.'s TIBCO Spotfire Analyst, TIBCO Spotfire Analytics Platform for AWS Marketplace, TIBCO Spotfire Desktop, and TIBCO Spotfire Server contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a stored Cross Site… | |
| Modificada | Alta (8) | 0.92% | — | Tibco EBX | 2/2/2021 | 17/6/2026 | The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a Stored Cross Site Scripting (XSS) attack on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 5.9.12 and… | |
| Modificada | Media (5.4) | 0.52% | — | Tibco BPM EnterpriseTibco BPM Enterprise Distribution FOR Silver Fabric | 26/1/2021 | 17/6/2026 | The Application Development Clients component of TIBCO Software Inc.'s TIBCO BPM Enterprise and TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a Cross Site Scripting (XSS) attack on the affected… | |
| Modificada | Alta (7.1) | 1.1% | — | Tibco EBX Add-ons | 12/1/2021 | 17/6/2026 | The TIBCO EBX Add-on for Oracle Hyperion EPM, TIBCO EBX Data Exchange Add-on, and TIBCO EBX Insight Add-on components of TIBCO Software Inc.'s TIBCO EBX Add-ons contain a vulnerability that theoretically allows a low privileged attacker with network access to execute an XML External Entity (XXE) attack. Affected… | |
| Modificada | Media (6.5) | 0.75% | — | Tibco Partnerexpress | 15/12/2020 | 17/6/2026 | The REST API component of TIBCO Software Inc.'s TIBCO PartnerExpress contains a vulnerability that theoretically allows an unauthenticated attacker with network access to obtain an authenticated login URL for the affected system via a REST API. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: version… | |
| Modificada | Alta (8.8) | 0.33% | — | Tibco Iprocess Workspace Browser | 10/11/2020 | 17/6/2026 | The Core component of TIBCO Software Inc.'s TIBCO iProcess Workspace (Browser) contains a vulnerability that theoretically allows an unauthenticated attacker with network access to execute a Cross Site Request Forgery (CSRF) attack on the affected system. A successful attack using this vulnerability requires human… | |
| Modificada | Alta (8.8) | 0.87% | — | Tibco Foresight Archive AND Retrieval SystemTibco Foresight Operational MonitorTibco Foresight Transaction Insight | 20/10/2020 | 17/6/2026 | The Transaction Insight reporting component of TIBCO Software Inc.'s TIBCO Foresight Archive and Retrieval System, TIBCO Foresight Archive and Retrieval System Healthcare Edition, TIBCO Foresight Operational Monitor, TIBCO Foresight Operational Monitor Healthcare Edition, TIBCO Foresight Transaction Insight, and TIBCO… | |
| Modificada | Media (5.4) | 0.57% | — | Tibco Spotfire AnalystTibco Spotfire Analytics PlatformTibco Spotfire DesktopTibco Spotfire Server | 15/9/2020 | 17/6/2026 | The Spotfire client component of TIBCO Software Inc.'s TIBCO Spotfire Analyst, TIBCO Spotfire Analytics Platform for AWS Marketplace, TIBCO Spotfire Desktop, and TIBCO Spotfire Server contains a vulnerability that theoretically allows a legitimate user to inject scripts. If executed by a victim authenticated to the… | |
| Modificada | Media (6.5) | 0.79% | — | Tibco Data VirtualizationTibco Data Virtualization FOR AWS Marketplace | 18/8/2020 | 17/6/2026 | The TIBCO Data Virtualization Server component of TIBCO Software Inc.'s TIBCO Data Virtualization and TIBCO Data Virtualization for AWS Marketplace contains a vulnerability that theoretically allows a malicious authenticated user to download any arbitrary file from the affected system. The user must be authenticated… | |
| Modificada | Alta (8.1) | 0.84% | — | Tibco Silver Fabric | 11/8/2020 | 17/6/2026 | The VirtualRouter component of TIBCO Software Inc.'s TIBCO Silver Fabric contains a vulnerability that theoretically allows an attacker to inject scripts via URLs. The attacker could theoretically social engineer an authenticated user into submitting the URL, thus executing the script on the affected system with the… | |
| Modificada | Alta (8.8) | 1.7% | — | Tibco Managed File Transfer Command CenterTibco Managed File Transfer Internet Server | 30/6/2020 | 17/6/2026 | The MFT admin service component of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contains a vulnerability that theoretically allows an authenticated user with specific permissions to obtain the session identifier of another user. The session identifier… | |
| Modificada | Crítica (9.6) | 1.3% | — | Tibco Managed File Transfer Command CenterTibco Managed File Transfer Internet Server | 30/6/2020 | 17/6/2026 | The MFT Browser file transfer client and MFT Browser admin client components of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contain a vulnerability that theoretically allows an attacker to craft an URL that will execute arbitrary commands on the… |