Vulnerability Description
The Web Server component in TIBCO LogLogic Unity before 1.1.1 allows remote authenticated users to gain privileges, and consequently obtain sensitive information, via an HTTP request.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tibco | Loglogic Unity | <= 1.1.0 |
Related Weaknesses (CWE)
References
- http://www.tibco.com/assets/bltec3263ae44ae601b/2015-005-advisory.txtVendor Advisory
- http://www.tibco.com/mk/advisory.jspVendor Advisory
- http://www.tibco.com/assets/bltec3263ae44ae601b/2015-005-advisory.txtVendor Advisory
- http://www.tibco.com/mk/advisory.jspVendor Advisory
FAQ
What is CVE-2015-8090?
CVE-2015-8090 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The Web Server component in TIBCO LogLogic Unity before 1.1.1 allows remote authenticated users to gain privileges, and consequently obtain sensitive information, via an HTTP request.
How severe is CVE-2015-8090?
CVE-2015-8090 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-8090?
Check the references section above for vendor advisories and patch information. Affected products include: Tibco Loglogic Unity.