Local Access Vulnerability in TIBCO BusinessConnect Container Edition Allows Unauthorized Access to Administrative Credentials

Local Access Vulnerability in TIBCO BusinessConnect Container Edition Allows Unauthorized Access to Administrative Credentials

CVE-2021-43050 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

The Auth Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitable vulnerability that allows an unauthenticated attacker with local access to obtain administrative usernames and passwords for the affected system. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition: versions 1.1.0 and below.

Learn more about our Cis Benchmark Audit For Server Software.