TIBCO BusinessConnect Trading Community Management Cross-Site Request Forgery Vulnerability
CVE-2022-22778
8.8HIGH
Key Information:
- Vendor
Tibco
- Vendor
- CVE Published:
- 18 May 2022
What is CVE-2022-22778?
The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to execute Cross-Site Request Forgery (CSRF) on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below.
Affected Version(s)
TIBCO BusinessConnect Trading Community Management <= 6.1.0