Vulnerabilities > Tibco > Managed File Transfer Command Center > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-30 CVE-2020-9414 Cross-site Scripting vulnerability in Tibco products
The MFT admin service component of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contains a vulnerability that theoretically allows an authenticated user with specific permissions to obtain the session identifier of another user.
network
low complexity
tibco CWE-79
8.8
2017-10-17 CVE-2017-5531 Unspecified vulnerability in Tibco products
Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Internet Server versions 8.0.0 and 8.0.1 that enable the Administrator Service may be affected by a vulnerability which may allow any authenticated user to gain administrative control of Managed File Transfer web applications.
network
low complexity
tibco
8.8