Lucene search

K
cve[email protected]CVE-2011-0649
HistoryFeb 04, 2011 - 1:00 a.m.

CVE-2011-0649

2011-02-0401:00:08
web.nvd.nist.gov
18
cve-2011-0649
tibco
rendezvous
ems
tra
unix
root privileges
vulnerability
suid

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Service (EMS) 5.1.0 through 6.0.0, Runtime Agent (TRA) 5.6.2 through 5.7.0, Silver BPM Service before 1.0.4, Silver CAP Service vebefore 1.0.2, and Silver BusinessWorks Service 1.0.0, when running on Unix systems, allow local users to gain root privileges via unknown vectors related to SUID and (1) Rendezvous Routing Daemon (rvrd), (2) Rendezvous Secure Daemon (rvsd), (3) Rendezvous Secure Routing Daemon (rvsrd), and (4) EMS Server (tibemsd).

Affected configurations

NVD
Node
tibcorendezvousMatch8.2.1
OR
tibcorendezvousMatch8.3.0
Node
tibcoenterprise_message_serviceMatch5.1.0
OR
tibcoenterprise_message_serviceMatch5.1.1
OR
tibcoenterprise_message_serviceMatch6.0.0
Node
tibcoruntime_agentMatch5.6.2
OR
tibcoruntime_agentMatch5.7.0
Node
tibcosilver_bpm_serviceRange1.0.3
OR
tibcosilver_bpm_serviceMatch1.0.1
Node
tibcosilver_cap_serviceRange1.0.1
OR
tibcosilver_cap_serviceMatch1.0.0
Node
tibcosilver_businessworks_serviceMatch1.0.0

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Related for CVE-2011-0649