TIBCO Managed File Transfer Internet Server before 7.2.5, Managed File Transfer Command Center before 7.2.5, Slingshot before 1.9.4, and Vault before 2.0.1 allow remote authenticated users to obtain sensitive information via a crafted HTTP request.
2015-09-29T18:59:04.630
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.0 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | tibco | managed_file_transfer_internet_server | ≤ 7.2.4 | Yes |
Application | tibco | vault | ≤ 2.0.0 | Yes |
Application | tibco | managed_file_transfer_command_center | ≤ 7.2.4 | Yes |
Application | tibco | slingshot | ≤ 1.9.3 | Yes |