CVE-2021-43049 is an easily exploitable vulnerability in the Database component of TIBCO BusinessConnect Container Edition versions 1.1.0 and below. This critical vulnerability (CVSS 9.8) allows an unauthenticated attacker with network access to compromise the system, leading to the disclosure of usernames and passwords. While no public exploit code or active exploitation has been confirmed, the high CVSS score and community discussion indicate a significant risk. Organizations using affected TIBCO BusinessConnect Container Edition versions should prioritize patching to mitigate this threat.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.1.1CPE matchmatch criteria | cpe:2.3:a:tibco:businessconnect:*:*:*:*:container:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.