CISA Known Exploited Vulnerability

CVE-2018-5430

TIBCO · JasperReports

TIBCO JasperReports Server Information Disclosure Vulnerability

Date added
BOD 22-01 due date
CWE CWE-22
Ransomware Unknown

CISA description

TIBCO JasperReports Server contain a vulnerability which may allow any authenticated user read-only access to the contents of the web application, including key configuration files.

Required action

Apply updates per vendor instructions.