VendorsTIBCOruntime_agentall versions
Vulnerabilities

TIBCO Runtime Agent

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2008-3338
Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBCO Hawk before 4.8.1; Runtime Agent (TRA) before 5.6.0; iProcess Engine 10.3.0 through 10.6.2 and 11.0.0; and Mainframe Service Tracker before 1.1.0 might allow remote attackers to execute arbitrary code via a crafted message.
Published 2008-08-13 · Modified
10.0EPSS 0.048
CVE-2021-28827
TIBCO Administrator Stored Cross Site Scripting vulnerability
Published 2021-04-20 · Modified
9.6EPSS 0.011
CVE-2008-1703
Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO products, allow remote attackers to execute arbitrary code via a crafted message.
Published 2008-04-11 · Modified
9.3EPSS 0.048
CVE-2023-26219
TIBCO Operational Intelligence Hawk RedTail Credential Exposure Vulnerability
Published 2023-10-24 · Modified
8.8EPSS 0.004
CVE-2006-2830
Buffer overflow in TIBCO Rendezvous before 7.5.1, TIBCO Runtime Agent (TRA) before 5.4, and Hawk before 4.6.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the HTTP administrative interface.
Published 2006-06-05 · Modified
7.5EPSS 0.060
CVE-2011-0649
Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Service (EMS) 5.1.0 through 6.0.0, Runtime Agent (TRA) 5.6.2 through 5.7.0, Silver BPM Service before 1.0.4, Silver CAP Service vebefore 1.0.2, and Silver BusinessWorks Service 1.0.0, when running on Unix systems, allow local users to gain root privileges via unknown vectors related to SUID and (1) Rendezvous Routing Daemon (rvrd), (2) Rendezvous Secure Daemon (rvsd), (3) Rendezvous Secure Routing Daemon (rvsrd), and (4) EMS Server (tibemsd).
Published 2011-02-04 · Modified
7.2EPSS 0.004
CVE-2010-0184
The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via unspecified vectors.
Published 2010-01-14 · Modified
7.2EPSS 0.003
CVE-2018-5434
XML eXternal Entity Expansion Vulnerabilities with TIBCO Runtime Agent
Published 2018-06-13 · Modified
6.8EPSS 0.012
CVE-2006-2829
Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (TRA) before 5.4 allows authenticated users to execute arbitrary code via the configuration for tibhawkhma.
Published 2006-06-05 · Modified
6.8EPSS 0.005