Vulnerabilities (CVE)

Filtered by vendor Tibco Subscribe
Filtered by product Managed File Transfer Command Center
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-9414 1 Tibco 2 Managed File Transfer Command Center, Managed File Transfer Internet Server 2020-07-10 9.0 HIGH 8.8 HIGH
The MFT admin service component of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contains a vulnerability that theoretically allows an authenticated user with specific permissions to obtain the session identifier of another user. The session identifier when replayed could provide administrative rights or file transfer permissions to the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center: versions 8.2.1 and below and TIBCO Managed File Transfer Internet Server: versions 8.2.1 and below.
CVE-2017-5531 1 Tibco 2 Managed File Transfer Command Center, Managed File Transfer Internet Server 2019-10-09 6.5 MEDIUM 8.8 HIGH
Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Internet Server versions 8.0.0 and 8.0.1 that enable the Administrator Service may be affected by a vulnerability which may allow any authenticated user to gain administrative control of Managed File Transfer web applications.