Home
HIGH: 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:LDefault status
unaffected
6.12.0 (Hotfix) before HF1
affected
6.11.0 (Hotfix) before HF4
affected
6.10.0 (Hotfix) before HF6
affected
6.9.1 (Hotfix) before HF8
affected
Default status
unaffected
2.4.3 (Hotfix) before HF2
affected
Description
Injection vulnerabilities due to validation/sanitisation of user-supplied input in ActiveMatrix BusinessWorks and Enterprise Administrator allows information disclosure, including exposure of accessible local files and host system details, and may allow manipulation of application behaviour.
Product status
6.12.0 (Hotfix) before HF1
6.11.0 (Hotfix) before HF4
6.10.0 (Hotfix) before HF6
6.9.1 (Hotfix) before HF8
2.4.3 (Hotfix) before HF2
References
community.tibco.com/...rix-businessworks-cve-2026-3912-r227/