Medium severity5.4NVD Advisory· Published Nov 12, 2019· Updated Jun 17, 2026
CVE-2019-17332
CVE-2019-17332
Description
The Digital Asset Manager Web Interface component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains a vulnerability that theoretically allows authenticated users to perform stored cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions up to and including 3.20.13, versions 4.1.0, 4.2.0, 4.2.1, and 4.2.2.
Affected products
7cpe:2.3:a:tibco:ebx_add-ons:*:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:tibco:ebx_add-ons:*:*:*:*:*:*:*:*range: <=3.20.13
- cpe:2.3:a:tibco:ebx_add-ons:4.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:tibco:ebx_add-ons:4.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:tibco:ebx_add-ons:4.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:tibco:ebx_add-ons:4.2.2:*:*:*:*:*:*:*
- (no CPE)range: <=3.20.13, 4.1.0, 4.2.0, 4.2.1, 4.2.2
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.