CVE-2026-3207

Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows unauthorised access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tibco:bpm_enterprise:*:*:*:*:*:*:*:*

History

02 Apr 2026, 20:46

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:tibco:bpm_enterprise:*:*:*:*:*:*:*:*
References () https://community.tibco.com/advisories/tibco-security-advisory-march-17-2026-tibco-bpm-enterprise-cve-2026-3207-r226/ - () https://community.tibco.com/advisories/tibco-security-advisory-march-17-2026-tibco-bpm-enterprise-cve-2026-3207-r226/ - Vendor Advisory
First Time Tibco
Tibco bpm Enterprise

18 Mar 2026, 14:52

Type Values Removed Values Added
Summary
  • (es) Problema de configuración en Java Management Extensions (JMX) en TIBCO BPM Enterprise versión 4.x permite acceso no autorizado.

17 Mar 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-17 19:16

Updated : 2026-04-02 20:46


NVD link : CVE-2026-3207

Mitre link : CVE-2026-3207

CVE.ORG link : CVE-2026-3207


JSON object : View

Products Affected

tibco

  • bpm_enterprise
CWE
CWE-306

Missing Authentication for Critical Function