Show filters
42 Total Results
Displaying 21-30 of 42
Sort by:
Attacker Value
Unknown

CVE-2017-1359

Disclosure Date: October 03, 2017 (last updated November 26, 2024)
IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126686.
0
Attacker Value
Unknown

CVE-2017-1168

Disclosure Date: August 10, 2017 (last updated November 26, 2024)
IBM Rational Engineering Lifecycle Manager 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123187.
0
Attacker Value
Unknown

CVE-2016-9700

Disclosure Date: July 05, 2017 (last updated November 26, 2024)
IBM Jazz Foundation could allow an authenticated attacker to obtain sensitive information from error message stack traces. IBM X-Force ID: 119528.
0
Attacker Value
Unknown

CVE-2016-9747

Disclosure Date: June 22, 2017 (last updated November 26, 2024)
IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown

CVE-2016-9973

Disclosure Date: June 13, 2017 (last updated November 26, 2024)
IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 120209.
0
Attacker Value
Unknown

CVE-2017-1099

Disclosure Date: June 13, 2017 (last updated November 26, 2024)
IBM Jazz Foundation could expose potentially sensitive information to authenticated users through stack trace error conditions. IBM X-Force ID: 120659.
0
Attacker Value
Unknown

CVE-2016-9735

Disclosure Date: May 15, 2017 (last updated November 26, 2024)
IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 119781,
0
Attacker Value
Unknown

CVE-2016-9707

Disclosure Date: March 31, 2017 (last updated November 26, 2024)
IBM Jazz Foundation is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM Reference #: 2000784.
0
Attacker Value
Unknown

CVE-2016-2987

Disclosure Date: February 01, 2017 (last updated November 25, 2024)
An undisclosed vulnerability in CLM applications may result in some administrative deployment parameters being shown to an attacker.
0
Attacker Value
Unknown

CVE-2016-3014

Disclosure Date: November 30, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rational Quality Manager 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rational Team Concert 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rational DOORS Next Generation 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rational Engineering Lifecycle Manager 4.x before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, Rational Rhapsody Design Manager 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17, and Rational Software Architect Design Manager 4.0 before 4.0.7 iFix11 and 5.0 before 5.0.2 iFix17 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
0