Vulnerability Description
The VirtualRouter component of TIBCO Software Inc.'s TIBCO Silver Fabric contains a vulnerability that theoretically allows an attacker to inject scripts via URLs. The attacker could theoretically social engineer an authenticated user into submitting the URL, thus executing the script on the affected system with the privileges of the user. Affected releases are TIBCO Software Inc.'s TIBCO Silver Fabric: versions 6.0.0 and below.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tibco | Silver Fabric | <= 6.0.0 |
References
- http://www.tibco.com/services/support/advisoriesVendor Advisory
- http://www.tibco.com/services/support/advisoriesVendor Advisory
FAQ
What is CVE-2019-17339?
CVE-2019-17339 is a vulnerability with a CVSS score of 6.8 (MEDIUM). The VirtualRouter component of TIBCO Software Inc.'s TIBCO Silver Fabric contains a vulnerability that theoretically allows an attacker to inject scripts via URLs. The attacker could theoretically soc...
How severe is CVE-2019-17339?
CVE-2019-17339 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-17339?
Check the references section above for vendor advisories and patch information. Affected products include: Tibco Silver Fabric.