Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-26219


The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain credentials used to access associated EMS servers. Affected releases are TIBCO Software Inc.'s TIBCO Hawk: versions 6.2.2 and below, TIBCO Hawk Distribution for TIBCO Silver Fabric: versions 6.2.2 and below, TIBCO Operational Intelligence Hawk RedTail: versions 7.2.1 and below, and TIBCO Runtime Agent: versions 5.12.2 and below.


Published

2023-10-25T18:17:25.143

Last Modified

2024-11-21T07:50:56.447

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.4 (HIGH)

Weaknesses
  • Type: Primary
    CWE-798

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application tibco hawk < 6.2.3 Yes
Application tibco hawk_distribution_for_tibco_silver_fabric < 6.2.3 Yes
Application tibco operational_intelligence_hawk_redtail < 7.2.2 Yes
Application tibco runtime_agent < 5.12.3 Yes

References