Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2020-9409: Advisory | TIBCO Software

The administrative UI component of TIBCO Software Inc.’s TIBCO JasperReports Server, TIBCO JasperReports Server for AWS Marketplace, and TIBCO JasperReports Server for ActiveMatrix BPM contains a vulnerability that theoretically allows an unauthenticated attacker to obtain the permissions of a JasperReports Server “superuser” for the affected systems. The attacker can theoretically exploit the vulnerability consistently, remotely, and without authenticating. Affected releases are TIBCO Software Inc.’s TIBCO JasperReports Server: versions 7.1.1 and below, TIBCO JasperReports Server for AWS Marketplace: versions 7.1.1 and below, and TIBCO JasperReports Server for ActiveMatrix BPM: versions 7.1.1 and below.

CVE
#vulnerability#web#microsoft#amazon#apache#git#intel#aws#auth#sap#ssl
  • Customers

    Customers

    • Voice of the Customer
      • Voice of the Customer
      • Success Stories
      • Customer Advocacy
      • Mercedes-AMG Petronas Formula One Team
    • Customer Support
      • Community
      • Product Documentation
      • Consulting
      • Training & Certification
      • Public Notices
      • Support

    **

    Innovative customers. Tangible business impact.

****

Learn how 75 companies across 15 industries are using our Connected Intelligence platform



**
  • Solutions

    Solutions

    • Industry
      • Banking
      • Credit Union
      • Energy
      • Government
      • Healthcare
      • Insurance
      • Law Enforcement
      • Manufacturing
      • Retail
      • Telecommunications
      • Travel & Transportation
    • Business
      • Anything 360
      • Anomaly Detection
      • Cloud Data Migration
      • Hybrid Cloud Integration
      • Internet of Things (IoT)
      • Process Mining
      • Supply Chain
    • Technology
      • Responsive Application Mesh
      • Hyperconverged Analytics
      • Agile Data Fabric
      • Amazon Web Services (AWS)
      • Apache Kafka
      • Data Integration
      • Microsoft Azure
      • Microsoft Dynamics 365 Integration
      • Reference Data Management
      • Salesforce Integration
      • SAP Integration
    • Small & Midsized Business
    • A-Z Listing

    Manufacturing Intelligence****Manufacturing intelligence for the modern digital factory

  • Products

    Products

    • Connect seamlessly any application, device or data source
      • Integration & API Management
        • TIBCO Cloud™ Integration
        • TIBCO Cloud™ API Management
        • TIBCO BusinessWorks™
        • TIBCO BusinessConnect™
        • TIBCO Cloud™ AuditSafe
        • TIBCO Foresight®
        • TIBCO® Managed File Transfer
        • TIBCO ActiveSpaces®
        • TIBCO® Reward
      • Events & Messaging
        • TIBCO Cloud™ Messaging
        • TIBCO BusinessEvents®
        • TIBCO Cloud™ Events
        • TIBCO® Messaging
        • TIBCO Flogo® Enterprise
        • TIBCO® Messaging Quasar
        • TIBCO® Messaging Castle
        • TIBCO Enterprise Message Service™
        • TIBCO FTL®
        • TIBCO Rendezvous®
        • TIBCO eFTL™
        • TIBCO® Messaging - Eclipse Mosquitto Distribution
      • Process Automation
        • TIBCO Cloud™ Nimbus®
        • TIBCO® BPM Enterprise
    • Unify data intelligently for better access, trust, and control
      • Master Data Management
        • TIBCO EBX® Software
        • TIBCO Omni-HealthData
        • TIBCO Cloud™ Metadata
      • Data Quality
        • TIBCO Omni-Gen®
        • TIBCO® DQ
      • Data Virtualization
        • TIBCO® Data Virtualization
        • TIBCO® Graph Database
    • Predict confidently with real-time data-driven intelligence
      • Visual Analytics
        • TIBCO Spotfire®
        • TIBCO Jaspersoft®
        • TIBCO WebFOCUS®
      • Data Science
        • TIBCO® Data Science
        • TIBCO® Data Science - Team Studio
        • TIBCO® ModelOps
      • Streaming Analytics
        • TIBCO® Streaming
    • A-Z Listing

    TIBCO Cloud™ Integration****Empower everyone to integrate anything with API-led and event-driven integration.

  • Partners

    Partners

    • Partners
      • Partner Solution Showcase
      • Explore a Partnership
      • Analyst Reports
    • Partners
      • Find a Partner
      • Partner Awards
      • OEM

    **

    TIBCO Partner Program Guide

****

Accelerating Customer Success Through Collaboration



**
  • Engage

  • Company

    Company

    • Company
      • About TIBCO
      • Leadership
      • Explore Opportunities
    • Social Programs
      • Social Sustainability Initiatives
      • TIBCO4Good
      • Press Releases

    **

    We strive to make a difference while doing work we are passionate about. Create the future you want and join us today.

**
  • Contact Us

    • Talk to Sales
    • Contact Us
  • TRIALS

    • English
    • español
    • français
    • Deutsch
    • italiano
    • 中文 (简体)
    • 中文 (繁體)
    • 한국어
    • Portuguese, Brazil
    • 日本語
    • 日本語 (パートナーサイト)
    • Vietnamese

 Back

TIBCO Logo

  • Customers

    Customers

    • Voice of the Customer
      • Voice of the Customer
      • Success Stories
      • Customer Advocacy
      • Mercedes-AMG Petronas Formula One Team
    • Customer Support
      • Community
      • Product Documentation
      • Consulting
      • Training & Certification
      • Public Notices
      • Support

    **

    Innovative customers. Tangible business impact.

****

Learn how 75 companies across 15 industries are using our Connected Intelligence platform



**
  • Solutions

    Solutions

    • Industry
      • Banking
      • Credit Union
      • Energy
      • Government
      • Healthcare
      • Insurance
      • Law Enforcement
      • Manufacturing
      • Retail
      • Telecommunications
      • Travel & Transportation
    • Business
      • Anything 360
      • Anomaly Detection
      • Cloud Data Migration
      • Hybrid Cloud Integration
      • Internet of Things (IoT)
      • Process Mining
      • Supply Chain
    • Technology
      • Responsive Application Mesh
      • Hyperconverged Analytics
      • Agile Data Fabric
      • Amazon Web Services (AWS)
      • Apache Kafka
      • Data Integration
      • Microsoft Azure
      • Microsoft Dynamics 365 Integration
      • Reference Data Management
      • Salesforce Integration
      • SAP Integration
    • Small & Midsized Business
    • A-Z Listing

    Manufacturing Intelligence****Manufacturing intelligence for the modern digital factory

  • Products

    Products

    • Connect seamlessly any application, device or data source
      • Integration & API Management
        • TIBCO Cloud™ Integration
        • TIBCO Cloud™ API Management
        • TIBCO BusinessWorks™
        • TIBCO BusinessConnect™
        • TIBCO Cloud™ AuditSafe
        • TIBCO Foresight®
        • TIBCO® Managed File Transfer
        • TIBCO ActiveSpaces®
        • TIBCO® Reward
      • Events & Messaging
        • TIBCO Cloud™ Messaging
        • TIBCO BusinessEvents®
        • TIBCO Cloud™ Events
        • TIBCO® Messaging
        • TIBCO Flogo® Enterprise
        • TIBCO® Messaging Quasar
        • TIBCO® Messaging Castle
        • TIBCO Enterprise Message Service™
        • TIBCO FTL®
        • TIBCO Rendezvous®
        • TIBCO eFTL™
        • TIBCO® Messaging - Eclipse Mosquitto Distribution
      • Process Automation
        • TIBCO Cloud™ Nimbus®
        • TIBCO® BPM Enterprise
    • Unify data intelligently for better access, trust, and control
      • Master Data Management
        • TIBCO EBX® Software
        • TIBCO Omni-HealthData
        • TIBCO Cloud™ Metadata
      • Data Quality
        • TIBCO Omni-Gen®
        • TIBCO® DQ
      • Data Virtualization
        • TIBCO® Data Virtualization
        • TIBCO® Graph Database
    • Predict confidently with real-time data-driven intelligence
      • Visual Analytics
        • TIBCO Spotfire®
        • TIBCO Jaspersoft®
        • TIBCO WebFOCUS®
      • Data Science
        • TIBCO® Data Science
        • TIBCO® Data Science - Team Studio
        • TIBCO® ModelOps
      • Streaming Analytics
        • TIBCO® Streaming
    • A-Z Listing

    TIBCO Cloud™ Integration****Empower everyone to integrate anything with API-led and event-driven integration.

  • Partners

    Partners

    • Partners
      • Partner Solution Showcase
      • Explore a Partnership
      • Analyst Reports
    • Partners
      • Find a Partner
      • Partner Awards
      • OEM

    **

    TIBCO Partner Program Guide

****

Accelerating Customer Success Through Collaboration



**
  • Engage

  • Company

    Company

    • Company
      • About TIBCO
      • Leadership
      • Explore Opportunities
    • Social Programs
      • Social Sustainability Initiatives
      • TIBCO4Good
      • Press Releases

    **

    We strive to make a difference while doing work we are passionate about. Create the future you want and join us today.

**
  • Contact Us
    • Talk to Sales
    • Contact Us

TRIALS

  • English
  • español
  • français
  • Deutsch
  • italiano
  • 中文 (简体)
  • 中文 (繁體)
  • 한국어
  • Portuguese, Brazil
  • 日本語
  • 日本語 (パートナーサイト)
  • Vietnamese

Sitewide search

  • Home
  • Services
  • Support

Security Advisories

The following are security advisories related to TIBCO’s software releases. Please be assured that we have taken proactive steps to address these issues, including the release of new product versions. See the following links for additional details including the description, impact, and solutions related to these advisories.

  • 2022
  • 2021
  • 2020
  • 2019
  • 2018
  • 2017
  • 2016
  • 2015

September

August

July

May

March

February

January

December

November

October

September

June

April

March

February

January

December

November

October

September

August

June

May

March

February

January

December

November

October

September

August

June

May

April

March

February

January

December

November

October

August

June

May

April

December

November

October

June

May

January

April

November

October

September

August

July

February

November

October

September

April

February

October

March

September

August

May

March

February

December

October

February

January

April

Sorry, there are no available Advisories for that search.

June

  • About

    Discover the people, philosophy, and practices behind TIBCO

  • Support

    Find helpful links, documentation, and tech support

  • Community

    Collaborate and share knowledge with other TIBCO users

  • News

    Stay up to speed on what’s new with TIBCO

  • Resources

    Browse our comprehensive resource library

  • Blog

    Read the latest trends, ideas, and product news from TIBCO

  • Events

    Don’t miss out on upcoming conferences, webinars, and more

  • The Apex

    Explore think-pieces geared towards executive leaders

  • Careers

    Pursue your passion in an award-winning workplace

  • Public Notices

    Up-to-date security release information

  • Contact Us

    Get in touch with us and learn more about TIBCO

TIBCO Logo

A global leader in enterprise data, TIBCO empowers its customers to connect, unify, and confidently predict business outcomes, solving the world’s most complex data-driven challenges.

  • Trust Center
  • Privacy Policy
  • Terms of Use
  • Trademarks
  • Patents
  • COVID-19

Related news

CVE-2020-14829: Oracle Critical Patch Update Advisory - October 2020

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907