AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-23272

MEDIUM · CVSS 4.6 EPSS 0.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-01-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-23272
Severity
MEDIUM
CVSS
4.6
EPSS
0.52%

Original NVD Description

The Application Development Clients component of TIBCO Software Inc.'s TIBCO BPM Enterprise and TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a Cross Site Scripting (XSS) attack on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO BPM Enterprise: versions 4.3.0 and below and TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric: versions 4.3.0 and below.