Headline
CVE-2020-9409: Advisory | TIBCO Software
The administrative UI component of TIBCO Software Inc.’s TIBCO JasperReports Server, TIBCO JasperReports Server for AWS Marketplace, and TIBCO JasperReports Server for ActiveMatrix BPM contains a vulnerability that theoretically allows an unauthenticated attacker to obtain the permissions of a JasperReports Server “superuser” for the affected systems. The attacker can theoretically exploit the vulnerability consistently, remotely, and without authenticating. Affected releases are TIBCO Software Inc.’s TIBCO JasperReports Server: versions 7.1.1 and below, TIBCO JasperReports Server for AWS Marketplace: versions 7.1.1 and below, and TIBCO JasperReports Server for ActiveMatrix BPM: versions 7.1.1 and below.
Customers
Customers
- Voice of the Customer
- Voice of the Customer
- Success Stories
- Customer Advocacy
- Mercedes-AMG Petronas Formula One Team
- Customer Support
- Community
- Product Documentation
- Consulting
- Training & Certification
- Public Notices
- Support
**
Innovative customers. Tangible business impact.
- Voice of the Customer
****
Learn how 75 companies across 15 industries are using our Connected Intelligence platform
**
Solutions
Solutions
- Industry
- Banking
- Credit Union
- Energy
- Government
- Healthcare
- Insurance
- Law Enforcement
- Manufacturing
- Retail
- Telecommunications
- Travel & Transportation
- Business
- Anything 360
- Anomaly Detection
- Cloud Data Migration
- Hybrid Cloud Integration
- Internet of Things (IoT)
- Process Mining
- Supply Chain
- Technology
- Responsive Application Mesh
- Hyperconverged Analytics
- Agile Data Fabric
- Amazon Web Services (AWS)
- Apache Kafka
- Data Integration
- Microsoft Azure
- Microsoft Dynamics 365 Integration
- Reference Data Management
- Salesforce Integration
- SAP Integration
- Small & Midsized Business
- A-Z Listing
Manufacturing Intelligence****Manufacturing intelligence for the modern digital factory
- Industry
Products
Products
- Connect seamlessly any application, device or data source
- Integration & API Management
- TIBCO Cloud™ Integration
- TIBCO Cloud™ API Management
- TIBCO BusinessWorks™
- TIBCO BusinessConnect™
- TIBCO Cloud™ AuditSafe
- TIBCO Foresight®
- TIBCO® Managed File Transfer
- TIBCO ActiveSpaces®
- TIBCO® Reward
- Events & Messaging
- TIBCO Cloud™ Messaging
- TIBCO BusinessEvents®
- TIBCO Cloud™ Events
- TIBCO® Messaging
- TIBCO Flogo® Enterprise
- TIBCO® Messaging Quasar
- TIBCO® Messaging Castle
- TIBCO Enterprise Message Service™
- TIBCO FTL®
- TIBCO Rendezvous®
- TIBCO eFTL™
- TIBCO® Messaging - Eclipse Mosquitto Distribution
- Process Automation
- TIBCO Cloud™ Nimbus®
- TIBCO® BPM Enterprise
- Integration & API Management
- Unify data intelligently for better access, trust, and control
- Master Data Management
- TIBCO EBX® Software
- TIBCO Omni-HealthData
- TIBCO Cloud™ Metadata
- Data Quality
- TIBCO Omni-Gen®
- TIBCO® DQ
- Data Virtualization
- TIBCO® Data Virtualization
- TIBCO® Graph Database
- Master Data Management
- Predict confidently with real-time data-driven intelligence
- Visual Analytics
- TIBCO Spotfire®
- TIBCO Jaspersoft®
- TIBCO WebFOCUS®
- Data Science
- TIBCO® Data Science
- TIBCO® Data Science - Team Studio
- TIBCO® ModelOps
- Streaming Analytics
- TIBCO® Streaming
- Visual Analytics
- A-Z Listing
TIBCO Cloud™ Integration****Empower everyone to integrate anything with API-led and event-driven integration.
- Connect seamlessly any application, device or data source
Partners
Partners
- Partners
- Partner Solution Showcase
- Explore a Partnership
- Analyst Reports
- Partners
- Find a Partner
- Partner Awards
- OEM
**
TIBCO Partner Program Guide
- Partners
****
Accelerating Customer Success Through Collaboration
**
Engage
Company
Company
- Company
- About TIBCO
- Leadership
- Explore Opportunities
- Social Programs
- Social Sustainability Initiatives
- TIBCO4Good
- Press Releases
**
We strive to make a difference while doing work we are passionate about. Create the future you want and join us today.
- Company
**
Contact Us
- Talk to Sales
- Contact Us
TRIALS
- English
- español
- français
- Deutsch
- italiano
- 中文 (简体)
- 中文 (繁體)
- 한국어
- Portuguese, Brazil
- 日本語
- 日本語 (パートナーサイト)
- Vietnamese
Back
TIBCO Logo
Customers
Customers
- Voice of the Customer
- Voice of the Customer
- Success Stories
- Customer Advocacy
- Mercedes-AMG Petronas Formula One Team
- Customer Support
- Community
- Product Documentation
- Consulting
- Training & Certification
- Public Notices
- Support
**
Innovative customers. Tangible business impact.
- Voice of the Customer
****
Learn how 75 companies across 15 industries are using our Connected Intelligence platform
**
Solutions
Solutions
- Industry
- Banking
- Credit Union
- Energy
- Government
- Healthcare
- Insurance
- Law Enforcement
- Manufacturing
- Retail
- Telecommunications
- Travel & Transportation
- Business
- Anything 360
- Anomaly Detection
- Cloud Data Migration
- Hybrid Cloud Integration
- Internet of Things (IoT)
- Process Mining
- Supply Chain
- Technology
- Responsive Application Mesh
- Hyperconverged Analytics
- Agile Data Fabric
- Amazon Web Services (AWS)
- Apache Kafka
- Data Integration
- Microsoft Azure
- Microsoft Dynamics 365 Integration
- Reference Data Management
- Salesforce Integration
- SAP Integration
- Small & Midsized Business
- A-Z Listing
Manufacturing Intelligence****Manufacturing intelligence for the modern digital factory
- Industry
Products
Products
- Connect seamlessly any application, device or data source
- Integration & API Management
- TIBCO Cloud™ Integration
- TIBCO Cloud™ API Management
- TIBCO BusinessWorks™
- TIBCO BusinessConnect™
- TIBCO Cloud™ AuditSafe
- TIBCO Foresight®
- TIBCO® Managed File Transfer
- TIBCO ActiveSpaces®
- TIBCO® Reward
- Events & Messaging
- TIBCO Cloud™ Messaging
- TIBCO BusinessEvents®
- TIBCO Cloud™ Events
- TIBCO® Messaging
- TIBCO Flogo® Enterprise
- TIBCO® Messaging Quasar
- TIBCO® Messaging Castle
- TIBCO Enterprise Message Service™
- TIBCO FTL®
- TIBCO Rendezvous®
- TIBCO eFTL™
- TIBCO® Messaging - Eclipse Mosquitto Distribution
- Process Automation
- TIBCO Cloud™ Nimbus®
- TIBCO® BPM Enterprise
- Integration & API Management
- Unify data intelligently for better access, trust, and control
- Master Data Management
- TIBCO EBX® Software
- TIBCO Omni-HealthData
- TIBCO Cloud™ Metadata
- Data Quality
- TIBCO Omni-Gen®
- TIBCO® DQ
- Data Virtualization
- TIBCO® Data Virtualization
- TIBCO® Graph Database
- Master Data Management
- Predict confidently with real-time data-driven intelligence
- Visual Analytics
- TIBCO Spotfire®
- TIBCO Jaspersoft®
- TIBCO WebFOCUS®
- Data Science
- TIBCO® Data Science
- TIBCO® Data Science - Team Studio
- TIBCO® ModelOps
- Streaming Analytics
- TIBCO® Streaming
- Visual Analytics
- A-Z Listing
TIBCO Cloud™ Integration****Empower everyone to integrate anything with API-led and event-driven integration.
- Connect seamlessly any application, device or data source
Partners
Partners
- Partners
- Partner Solution Showcase
- Explore a Partnership
- Analyst Reports
- Partners
- Find a Partner
- Partner Awards
- OEM
**
TIBCO Partner Program Guide
- Partners
****
Accelerating Customer Success Through Collaboration
**
Engage
Company
Company
- Company
- About TIBCO
- Leadership
- Explore Opportunities
- Social Programs
- Social Sustainability Initiatives
- TIBCO4Good
- Press Releases
**
We strive to make a difference while doing work we are passionate about. Create the future you want and join us today.
- Company
**
- Contact Us
- Talk to Sales
- Contact Us
TRIALS
- English
- español
- français
- Deutsch
- italiano
- 中文 (简体)
- 中文 (繁體)
- 한국어
- Portuguese, Brazil
- 日本語
- 日本語 (パートナーサイト)
- Vietnamese
Sitewide search
- Home
- Services
- Support
Security Advisories
The following are security advisories related to TIBCO’s software releases. Please be assured that we have taken proactive steps to address these issues, including the release of new product versions. See the following links for additional details including the description, impact, and solutions related to these advisories.
- 2022
- 2021
- 2020
- 2019
- 2018
- 2017
- 2016
- 2015
September
August
July
May
March
February
January
December
November
October
September
June
April
March
February
January
December
November
October
September
August
June
May
March
February
January
December
November
October
September
August
June
May
April
March
February
January
December
November
October
August
June
May
April
December
November
October
June
May
January
April
November
October
September
August
July
February
November
October
September
April
February
October
March
September
August
May
March
February
December
October
February
January
April
Sorry, there are no available Advisories for that search.
June
About
Discover the people, philosophy, and practices behind TIBCO
Support
Find helpful links, documentation, and tech support
Community
Collaborate and share knowledge with other TIBCO users
News
Stay up to speed on what’s new with TIBCO
Resources
Browse our comprehensive resource library
Blog
Read the latest trends, ideas, and product news from TIBCO
Events
Don’t miss out on upcoming conferences, webinars, and more
The Apex
Explore think-pieces geared towards executive leaders
Careers
Pursue your passion in an award-winning workplace
Public Notices
Up-to-date security release information
Contact Us
Get in touch with us and learn more about TIBCO
TIBCO Logo
A global leader in enterprise data, TIBCO empowers its customers to connect, unify, and confidently predict business outcomes, solving the world’s most complex data-driven challenges.
- Trust Center
- Privacy Policy
- Terms of Use
- Trademarks
- Patents
- COVID-19
Related news
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).