Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows unauthorised access.
Metrics
Affected Vendors & Products
References
History
Thu, 02 Apr 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:tibco:bpm_enterprise:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Wed, 18 Mar 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tibco
Tibco bpm Enterprise |
|
| Vendors & Products |
Tibco
Tibco bpm Enterprise |
Tue, 17 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Mar 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows unauthorised access. | |
| Title | TIBCO BPM Enterprise Remote Code Execution (RCE) Vulnerability | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: tibco
Published: 2026-03-17T18:20:16.934Z
Updated: 2026-03-17T18:49:27.505Z
Reserved: 2026-02-25T15:39:30.380Z
Link: CVE-2026-3207
Updated: 2026-03-17T18:49:05.764Z
Status : Analyzed
Published: 2026-03-17T19:16:02.637
Modified: 2026-04-02T20:46:14.843
Link: CVE-2026-3207
No data.