cve/2013/CVE-2013-2373.md

19 lines
765 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2013-2373](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2373)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
The Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x before 4.0.3, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 does not properly implement access control, which allows remote attackers to obtain sensitive information or modify data via unspecified vectors.
### POC
#### Reference
- http://www.tibco.com/mk/advisory.jsp
2024-06-09 00:33:16 +00:00
- http://www.tibco.com/mk/advisory.jsp
2024-05-26 14:27:05 +02:00
#### Github
No PoCs found on GitHub currently.