HarborGuard / CVE
Back to search
HIGHCVE-2026-3207Published Modified CNA tibco

CVE-2026-3207: TIBCO BPM Enterprise Remote Code Execution (RCE) Vulnerability

Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows unauthorised access.

Metrics

CVSS v4.0
8.7
Severity
HIGH
Fixed in
5
Affected Products
1

Fix available

5
Affected packages
  • TIBCO / TIBCO BPM Enterprise
    < 5 (from 4.3)
CVSS Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L