CVE-2019-11209
HIGHTIBCO FTL 6.0.0-6.1.0 Access Control Bypass in Realm Configuration
Title source: llmDescription
The realm configuration component of TIBCO Software Inc.'s TIBCO FTL Community Edition, TIBCO FTL Developer Edition, TIBCO FTL Enterprise Edition contains a vulnerability that theoretically fails to properly enforce access controls. This issue affects TIBCO FTL Community Edition 6.0.0; 6.0.1; 6.1.0, TIBCO FTL Developer Edition 6.0.1; 6.1.0, and TIBCO FTL Enterprise Edition 6.0.0; 6.0.1; 6.1.0.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www.tibco.com/services/support/advisories
Vendor Advisory x_refsource_confirm
https://www.tibco.com/support/advisories/2019/08/tibco-security-advisory-august-20-2019-tibco-ftl
Scores
CVSS v3
8.8
EPSS
0.0051
EPSS Percentile
66.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
Status
published
Products (3)
tibco/ftl
6.0.0 (2 CPE variants)
tibco/ftl
6.0.1 (3 CPE variants)
tibco/ftl
6.1.0 (3 CPE variants)
Published
Aug 20, 2019
Tracked Since
Feb 18, 2026