Vulnerabilities > Tibco > Webfocus Reporting Server

DATE CVE VULNERABILITY TITLE RISK
2021-09-14 CVE-2021-35493 Cross-site Scripting vulnerability in Tibco products
The WebFOCUS Reporting Server and WebFOCUS Client components of TIBCO Software Inc.'s TIBCO WebFOCUS Client, TIBCO WebFOCUS Installer, and TIBCO WebFOCUS Reporting Server contain easily exploitable Stored and Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low privileged attacker to social engineer a legitimate user with network access to execute scripts targeting the affected system or the victim's local system.
network
low complexity
tibco CWE-79
5.4