Show filters
132 Total Results
Displaying 111-120 of 132
Sort by:
Attacker Value
Unknown

CVE-2016-9735

Disclosure Date: May 15, 2017 (last updated November 26, 2024)
IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 119781,
0
Attacker Value
Unknown

CVE-2016-6035

Disclosure Date: May 10, 2017 (last updated November 26, 2024)
IBM Rational Quality Manager is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 116896.
0
Attacker Value
Unknown

CVE-2017-1103

Disclosure Date: May 10, 2017 (last updated November 26, 2024)
IBM Team Concert (RTC) is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 120665.
0
Attacker Value
Unknown

CVE-2016-6037

Disclosure Date: May 10, 2017 (last updated November 26, 2024)
IBM Rational Team Concert (RTC) is vulnerable to HTML injection. A remote attacker with project administrator privileges could send a project that contains malicious HTML code, which when the project is viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 116918.
0
Attacker Value
Unknown

CVE-2017-5645

Disclosure Date: April 17, 2017 (last updated November 08, 2023)
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
Attacker Value
Unknown

CVE-2016-6031

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
IBM Rational Quality Manager 4.0, 5.0, and 6.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 2000784.
0
Attacker Value
Unknown

CVE-2016-9707

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
IBM Jazz Foundation is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM Reference #: 2000784.
0
Attacker Value
Unknown

CVE-2016-6036

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
IBM Rational Quality Manager (RQM) 4.0, 5.0, and 6.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 2000784.
0
Attacker Value
Unknown

CVE-2016-6022

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 2000784.
0
Attacker Value
Unknown

CVE-2016-2987

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
An undisclosed vulnerability in CLM applications may result in some administrative deployment parameters being shown to an attacker.
0