CVE-2011-3132
Tibco Spotfire Analytics Server < 10.0.1 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (4)
Scores
EPSS
0.0028
EPSS Percentile
50.8%
Classification
CWE
CWE-79
Status
published
Affected Products (9)
tibco/spotfire_analytics_server
< 10.0.1
tibco/spotfire_analytics_server
tibco/spotfire_server
tibco/spotfire_server
tibco/spotfire_server
tibco/spotfire_server
tibco/spotfire_server
tibco/spotfire_server
n/a/n/a
Timeline
Published
Sep 02, 2011
Tracked Since
Feb 18, 2026