Security Advisory

CVE-2018-5434

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-06-13 13:00:00
Last updated 2024-09-16 20:31:50
Assigner tibco
CVSS score 5.8
State PUBLISHED

Description

The TIBCO Designer component of TIBCO Software Inc.'s TIBCO Runtime Agent, and TIBCO Runtime Agent for z/Linux contains vulnerabilities wherein a malicious user could perform XML external entity expansion (XXE) attacks to disclose host machine information. Affected releases are TIBCO Software Inc.'s TIBCO Runtime Agent: versions up to and including 5.10.0, and TIBCO Runtime Agent for z/Linux: versions up to and including 5.9.1.