Show plain JSON{"id": "CVE-2011-1414", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2011-03-22T17:55:03.813", "references": [{"url": "http://secunia.com/advisories/43765", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://securitytracker.com/id?1025220", "source": "cve@mitre.org"}, {"url": "http://www.osvdb.org/71178", "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/46891", "source": "cve@mitre.org"}, {"url": "http://www.tibco.com/multimedia/tibbr_advisory_20110315_tcm8-13474.txt", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.tibco.com/services/support/advisories/tibbr-tibbr-service-advisory_20110315.jsp", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.vupen.com/english/advisories/2011/0687", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66113", "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/43765", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://securitytracker.com/id?1025220", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.osvdb.org/71178", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/46891", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.tibco.com/multimedia/tibbr_advisory_20110315_tcm8-13474.txt", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.tibco.com/services/support/advisories/tibbr-tibbr-service-advisory_20110315.jsp", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.vupen.com/english/advisories/2011/0687", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66113", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-79"}]}], "descriptions": [{"lang": "en", "value": "Cross-site scripting (XSS) vulnerability in the tibbr web server, as used in TIBCO tibbr 1.0.0 through 1.5.0 and tibbr Service 1.0.0 through 1.5.0, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors."}, {"lang": "es", "value": "Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en el servidor web tibbr, tal como se utiliza en tibbr TIBCO 1.0.0 hasta la versi\u00f3n 1.5.0 y tibbr service 1.0.0 hasta 1.5.0. Permite a atacantes remotos inyectar codigo de script web o c\u00f3digo HTML a trav\u00e9s de vectores no especificados."}], "lastModified": "2025-04-11T00:51:21.963", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:tibco:tibbr:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6197A7CF-B5B6-4B41-AE81-41E10636AB32"}, {"criteria": "cpe:2.3:a:tibco:tibbr:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "869E8158-4402-49B6-9862-E374C9CF151D"}, {"criteria": "cpe:2.3:a:tibco:tibbr:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E28D80AE-7098-457A-AB2D-F598AA1C1DD8"}, {"criteria": "cpe:2.3:a:tibco:tibbr_service:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "529CAA0D-C616-460D-ACD1-7CF4DB17CF09"}, {"criteria": "cpe:2.3:a:tibco:tibbr_service:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9DBA50C2-99EA-4EB7-864D-41BDEB46D3BA"}, {"criteria": "cpe:2.3:a:tibco:tibbr_service:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2204B99C-80CF-4128-9F4D-8E603C3F65EA"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}