CVE-2011-3424
Last modified
CVE-2011-3424 is a vulnerability of currently unknown severity. Session fixation vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Server before 7.1.1 and Managed File Transfer Command Center before 7.1.1, and the server in TIBCO Slingshot before 1.8.1, allows remote attackers to hijack web sessions via unspecified vectors.. EPSS estimates a 1.28% chance of exploitation in the next 30 days.
Description
Session fixation vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Server before 7.1.1 and Managed File Transfer Command Center before 7.1.1, and the server in TIBCO Slingshot before 1.8.1, allows remote attackers to hijack web sessions via unspecified vectors.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Tibco | Managed File Transfer Command Center | <= 7.1.0 |
| Tibco | Managed File Transfer Command Center | 6.7 |
| Tibco | Managed File Transfer Command Center | 7.0 |
| Tibco | Managed File Transfer Command Center | 7.0.1 |
| Tibco | Managed File Transfer Internet Server | <= 7.1.0 |
| Tibco | Managed File Transfer Internet Server | 6.7 |
| Tibco | Managed File Transfer Internet Server | 7.0 |
| Tibco | Managed File Transfer Internet Server | 7.0.1 |
| Tibco | Slingshot | <= 1.8.0 |
References
- http://secunia.com/advisories/45976Vendor Advisory
- http://secunia.com/advisories/45976Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-3424?
How severe is CVE-2011-3424?
How do I fix CVE-2011-3424?
Are you affected by CVE-2011-3424?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
