TIBCO iWay Service Manager Reflected Cross Site Scripting (XSS) Vulnerability
CVE-2022-30571
8.1HIGH
What is CVE-2022-30571?
The iWay Service Manager Console component of TIBCO Software Inc.'s TIBCO iWay Service Manager contains easily exploitable Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low privileged attacker with network access to execute scripts targeting the affected system or the victim's local system. Affected releases are TIBCO Software Inc.'s TIBCO iWay Service Manager: versions 8.0.6 and below.
Affected Version(s)
TIBCO iWay Service Manager <= 8.0.6