CVE-2011-0649

high

Description

Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Service (EMS) 5.1.0 through 6.0.0, Runtime Agent (TRA) 5.6.2 through 5.7.0, Silver BPM Service before 1.0.4, Silver CAP Service vebefore 1.0.2, and Silver BusinessWorks Service 1.0.0, when running on Unix systems, allow local users to gain root privileges via unknown vectors related to SUID and (1) Rendezvous Routing Daemon (rvrd), (2) Rendezvous Secure Daemon (rvsd), (3) Rendezvous Secure Routing Daemon (rvsrd), and (4) EMS Server (tibemsd).

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/65105

http://www.vupen.com/english/advisories/2011/0269

http://www.tibco.com/multimedia/rv_ems_security_advisory_20110201_tcm8-13185.txt

http://www.securityfocus.com/bid/46104

http://secunia.com/advisories/43174

http://secunia.com/advisories/43160

Details

Source: Mitre, NVD

Published: 2011-02-04

Updated: 2026-04-29

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00107