Vulnerabilities > Tibco > Data Science FOR AWS > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-03-26 CVE-2019-8989 Unspecified vulnerability in Tibco Data Science for AWS and Spotfire Data Science
The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science contains a vulnerability that theoretically enables a user to spoof their account to look like a different user in the affected system.
network
low complexity
tibco
4.0
2019-03-26 CVE-2019-8987 Cross-site Scripting vulnerability in Tibco Data Science for AWS and Spotfire Data Science
The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science contains a persistent cross-site scripting vulnerability that theoretically allows an authenticated user to gain access to all the capabilities of the web interface available to more privileged users.
network
low complexity
tibco CWE-79
5.4