Lucene search

K
cveMitreCVE-2015-4555
HistoryAug 30, 2015 - 2:59 p.m.

CVE-2015-4555

2015-08-3014:59:02
mitre
web.nvd.nist.gov
38
cve-2015-4555
buffer overflow
tibco rendezvous
rendezvous network server
substation es
messaging appliance
denial of service
arbitrary code execution

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.6

Confidence

High

EPSS

0.035

Percentile

91.5%

Buffer overflow in the HTTP administrative interface in TIBCO Rendezvous before 8.4.4, Rendezvous Network Server before 1.1.1, Substation ES before 2.9.0, and Messaging Appliance before 8.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors, related to the Rendezvous Daemon (rvd), Routing Daemon (rvrd), Secure Daemon (rvsd), Secure Routing Daemon (rvsrd), Gateway Daemon (rvgd), Daemon Adapter (rvda), Cache (rvcache), Agent (rva), and Relay Agent (rvrad) components.

Affected configurations

Nvd
Node
tibcomessaging_applianceRange8.7.1
OR
tibcorendezvousRange8.4.3
OR
tibcorendezvous_network_serverRange1.1.0
OR
tibcosubstation_esRange2.8.1
VendorProductVersionCPE
tibcomessaging_appliance*cpe:2.3:a:tibco:messaging_appliance:*:*:*:*:*:*:*:*
tibcorendezvous*cpe:2.3:a:tibco:rendezvous:*:*:*:*:*:*:*:*
tibcorendezvous_network_server*cpe:2.3:a:tibco:rendezvous_network_server:*:*:*:*:*:*:*:*
tibcosubstation_es*cpe:2.3:a:tibco:substation_es:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.6

Confidence

High

EPSS

0.035

Percentile

91.5%

Related for CVE-2015-4555