VendorsTIBCOactivematrix_bpmany version
Vulnerabilities

TIBCO ActiveMatrix BPM any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2019-8992
TIBCO Active Matrix Service Grid Administrator Remote Code Execution
Published 2019-04-24 · Modified
9.9EPSS 0.021
CVE-2019-8993
TIBCO Active Matrix Service Grid Administrator Unauthenticated Download of Sensitive File
Published 2019-04-24 · Modified
9.8EPSS 0.025
CVE-2019-8991
TIBCO Active Matrix Service Grid Administrator With Multiple Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities
Published 2019-04-24 · Modified
8.8EPSS 0.009
CVE-2019-8995
TIBCO ActiveMatrix BPM Open Redirect Vulnerability
Published 2019-04-24 · Modified
6.1EPSS 0.011
CVE-2012-0687
TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWorks Service Engine before 5.8.2; TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0; TIBCO BusinessEvents Runtime in Enterprise and Inference Editions 3.x before 3.0.3, Standard Edition 4.x before 4.0.2, and Standard Edition and Express 5.0.0; and TIBCO BusinessWorks Engine in TIBCO Silver Fabric ActiveMatrix BusinessWorks Distribution 5.9.2 and ActiveMatrix BusinessWorks before 5.9.3 allow remote attackers to obtain sensitive information via a crafted URL.
Published 2012-03-13 · Modified
5.0EPSS 0.014
CVE-2012-0688
Cross-site scripting (XSS) vulnerability in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2012-03-13 · Modified
4.3EPSS 0.009