Vulnerabilities > Tibco > Runtime Agent > 5.4.0

DATE CVE VULNERABILITY TITLE RISK
2010-01-14 CVE-2010-0184 Permissions, Privileges, and Access Controls vulnerability in Tibco Runtime Agent
The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via unspecified vectors.
local
low complexity
tibco CWE-264
7.2
2008-08-13 CVE-2008-3338 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Tibco products
Multiple buffer overflows in TIBCO Hawk (1) AMI C library (libtibhawkami) and (2) Hawk HMA (tibhawkhma), as used in TIBCO Hawk before 4.8.1; Runtime Agent (TRA) before 5.6.0; iProcess Engine 10.3.0 through 10.6.2 and 11.0.0; and Mainframe Service Tracker before 1.1.0 might allow remote attackers to execute arbitrary code via a crafted message.
network
low complexity
tibco CWE-119
critical
10.0