CVE-2015-4554 Details
Description
Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Analytics Platform for AWS 6.5 and 7.0.x before 7.0.1; Spotfire Automation Services before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Deployment Kit before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Desktop before 6.5.2 and 7.0.x before 7.0.1; Spotfire Desktop Language Packs 7.0.x before 7.0.1; Spotfire Professional before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Web Player before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; and Silver Fabric Enabler for Spotfire Web Player before 2.1.1 allow remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No CVSS 3.x data is available for this CVE.
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| http://www.securitytracker.com/id/1033015 | CVE | |
| http://www.tibco.com/assets/blt1fd126faba191a9f/2015-001-advisory.txt | CVE | Vendor Advisory |
| http://www.tibco.com/mk/advisory.jsp | CVE | Vendor Advisory |
| http://www.securitytracker.com/id/1033015 | [email protected] | |
| http://www.tibco.com/assets/blt1fd126faba191a9f/2015-001-advisory.txt | [email protected] | Vendor Advisory |
| http://www.tibco.com/mk/advisory.jsp | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| tibco spotfire deployment kit | <= 5.5.1 6.0.0 6.0.1 6.0.2 6.5.0 6.5.1 6.5.2 7.0.0 |
CPE
Remediation
| |
| tibco spotfire professional | <= 5.5.1 6.0.0 6.0.1 6.0.2 6.5.0 6.5.1 6.5.2 7.0.0 |
CPE
Remediation
| |
| tibco spotfire web player | <= 5.5.1 6.0.0 6.0.1 6.0.2 6.5.0 6.5.1 6.5.2 7.0.0 |
CPE
Remediation
| |
| tibco spotfire desktop | <= 6.5.1 7.0.0 |
CPE
Remediation
| |
| tibco spotfire desktop language packs | 7.0.0 |
CPE
Remediation
| |
| tibco spotfire automation services | <= 5.5.1 6.0.0 6.0.1 6.0.2 6.5.0 6.5.1 6.5.2 7.0.0 |
CPE
Remediation
| |
| tibco spotfire analyst | <= 5.5.1 6.0.0 6.0.1 6.0.2 6.5.0 6.5.1 6.5.2 7.0.0 |
CPE
Remediation
| |
| tibco silver fabric enabler for spotfire webplayer | 2.1.0 |
CPE
Remediation
| |
| tibco spotfire analytics platform for aws | 6.5 7.0.0 |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| May 6, 2026 | Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Sep 21, 2017 | CVE Modified | [email protected] |
| Jul 22, 2015 | Modified Analysis | [email protected] |
| Jul 22, 2015 | Initial Analysis | [email protected] |