"-Synchronized-Data."

This commit is contained in:
CVE Team 2019-08-08 16:00:58 +00:00
parent a0163bfd45
commit 01dbc00e2b
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8
3 changed files with 16 additions and 14 deletions

View File

@ -8,16 +8,13 @@
"vendor": { "vendor": {
"vendor_data": [ "vendor_data": [
{ {
"vendor_name": "Gree Inc.", "vendor_name": "n/a",
"product": { "product": {
"product_data": [ "product_data": [
{ {
"product_name": "jose-php", "product_name": "jose-php",
"version": { "version": {
"version_data": [ "version_data": [
{
"version_value": "prior 2.2.1"
},
{ {
"version_value": "fixed in 2.2.1" "version_value": "fixed in 2.2.1"
} }

View File

@ -10,6 +10,7 @@
"vendor": { "vendor": {
"vendor_data": [ "vendor_data": [
{ {
"vendor_name": "TIBCO Software Inc.",
"product": { "product": {
"product_data": [ "product_data": [
{ {
@ -17,8 +18,7 @@
"version": { "version": {
"version_data": [ "version_data": [
{ {
"version_affected": "<=", "version_value": "2.3.1 and prior"
"version_value": "2.3.1"
} }
] ]
} }
@ -28,15 +28,13 @@
"version": { "version": {
"version_data": [ "version_data": [
{ {
"version_affected": "<=", "version_value": "2.3.1 and prior"
"version_value": "2.3.1"
} }
] ]
} }
} }
] ]
}, }
"vendor_name": "TIBCO Software Inc."
} }
] ]
} }
@ -48,7 +46,7 @@
"description_data": [ "description_data": [
{ {
"lang": "eng", "lang": "eng",
"value": "The authorization component of TIBCO Software Inc.'s TIBCO API Exchange Gateway, and TIBCO API Exchange Gateway Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically processes OAuth authorization incorrectly, leading to potential escalation of privileges for the specific customer endpoint, when the implementation uses multiple scopes.\n\nThis issue affects: TIBCO Software Inc.'s TIBCO API Exchange Gateway version 2.3.1 and prior versions, and TIBCO API Exchange Gateway Distribution for TIBCO Silver Fabric version 2.3.1 and prior versions." "value": "The authorization component of TIBCO Software Inc.'s TIBCO API Exchange Gateway, and TIBCO API Exchange Gateway Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically processes OAuth authorization incorrectly, leading to potential escalation of privileges for the specific customer endpoint, when the implementation uses multiple scopes. This issue affects: TIBCO Software Inc.'s TIBCO API Exchange Gateway version 2.3.1 and prior versions, and TIBCO API Exchange Gateway Distribution for TIBCO Silver Fabric version 2.3.1 and prior versions."
} }
] ]
}, },
@ -86,11 +84,13 @@
"references": { "references": {
"reference_data": [ "reference_data": [
{ {
"refsource": "CONFIRM", "refsource": "MISC",
"url": "http://www.tibco.com/services/support/advisories" "url": "http://www.tibco.com/services/support/advisories",
"name": "http://www.tibco.com/services/support/advisories"
}, },
{ {
"refsource": "CONFIRM", "refsource": "CONFIRM",
"name": "https://www.tibco.com/support/advisories/2019/08/tibco-security-advisory-august-7-2019-tibco-api-exchange",
"url": "https://www.tibco.com/support/advisories/2019/08/tibco-security-advisory-august-7-2019-tibco-api-exchange" "url": "https://www.tibco.com/support/advisories/2019/08/tibco-security-advisory-august-7-2019-tibco-api-exchange"
} }
] ]

View File

@ -61,6 +61,11 @@
"refsource": "MISC", "refsource": "MISC",
"name": "https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451", "name": "https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451",
"url": "https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451" "url": "https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451"
},
{
"refsource": "MISC",
"name": "http://www.soyal.com/epaper/e-paper-en-117.html",
"url": "http://www.soyal.com/epaper/e-paper-en-117.html"
} }
] ]
} }