IBM Team Concert (RTC including IBM Rational Collaborative Lifecycle Management 4.0, 5.0., and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-force ID: 126858.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Ibm
Subscribe
|
Rational Collaborative Lifecycle Management
Subscribe
Rational Doors Next Generation
Subscribe
Rational Engineering Lifecycle Manager
Subscribe
Rational Quality Manager
Subscribe
Rational Rhapsody Design Manager
Subscribe
Rational Software Architect Design Manager
Subscribe
Rational Team Concert
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-10381 | IBM Team Concert (RTC including IBM Rational Collaborative Lifecycle Management 4.0, 5.0., and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-force ID: 126858. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-09-16T17:54:32.885Z
Reserved: 2016-11-30T00:00:00
Link: CVE-2017-1365
No data.
Status : Deferred
Published: 2017-12-27T16:29:14.230
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-1365
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD