TIBCO Software Inc. Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for TIBCO Software Inc. products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
2
In CISA KEV
2
Beyond CISA KEV
0
Sensor Observed
0
Virtual Patch Available
0
TIBCO Software Inc. KEVs Added by Year
Loading...
2 TIBCO Software Inc. KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2018-18809
TIBCO JasperReports Library Directory Traversal Vulnerability |
TIBCO JasperReports Library, TIBCO JasperReports Library Community Edition, TIBCO JasperReports Library for ActiveMatrix BPM, TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with Multi-Tenancy, TIBCO Jaspersoft Reporting and Analytics for AWS | Confirmed | In CISA | 29 Dec 2022 |
|
CVE-2018-5430
TIBCO JasperReports Server Information Disclosure Vulnerability |
TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with Multi-Tenancy, TIBCO Jaspersoft Reporting and Analytics for AWS | Confirmed | In CISA | 29 Dec 2022 |
Common Vulnerability Classes (CWE)
- CWE-200 — Exposure of Sensitive Information to an Unauthorized Actor 1
- CWE-22 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology