TIBCO BusinessConnect Trading Community Management Stored Cross Site Scripting Vulnerability
CVE-2022-22776
8HIGH
Key Information:
- Vendor
Tibco
- Vendor
- CVE Published:
- 18 May 2022
What is CVE-2022-22776?
The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains easily exploitable vulnerabilities that allows a low privileged attacker with network access to execute Stored Cross Site Scripting (XSS) on the affected system. A successful attack using these vulnerabilities requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below.
Affected Version(s)
TIBCO BusinessConnect Trading Community Management <= 6.1.0