CVE-2015-4554

TIBCO Spotfire <5.5.2-7.0.1 - Multiple Vulns

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Analytics Platform for AWS 6.5 and 7.0.x before 7.0.1; Spotfire Automation Services before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Deployment Kit before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Desktop before 6.5.2 and 7.0.x before 7.0.1; Spotfire Desktop Language Packs 7.0.x before 7.0.1; Spotfire Professional before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Web Player before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; and Silver Fabric Enabler for Spotfire Web Player before 2.1.1 allow remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1033015
Vendor Advisory x_refsource_confirm
http://www.tibco.com/mk/advisory.jsp

Scores

EPSS 0.0150
EPSS Percentile 81.4%

Details

Status published
Products (46)
tibco/silver_fabric_enabler_for_spotfire_webplayer 2.1.0
tibco/spotfire_analyst 6.0.0
tibco/spotfire_analyst 6.0.1
tibco/spotfire_analyst 6.0.2
tibco/spotfire_analyst 6.5.0
tibco/spotfire_analyst 6.5.1
tibco/spotfire_analyst 6.5.2
tibco/spotfire_analyst 7.0.0
tibco/spotfire_analyst < 5.5.1
tibco/spotfire_analytics_platform_for_aws 6.5
... and 36 more
Published Jul 21, 2015
Tracked Since Feb 18, 2026