CVE-2011-3133

Session fixation vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers to hijack web sessions via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 58%
VendorProductVersion
tibcospotfire_analytics_server
𝑥
≤ 10.0.1
tibcospotfire_analytics_server
10.0.0
tibcospotfire_server
3.0.0
tibcospotfire_server
3.0.1
tibcospotfire_server
3.1.0
tibcospotfire_server
3.1.1
tibcospotfire_server
3.2.0
tibcospotfire_server
3.3.0
𝑥
= Vulnerable software versions