IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150431.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Ibm
Subscribe
|
Rational Collaborative Lifecycle Management
Subscribe
Rational Doors Next Generation
Subscribe
Rational Engineering Lifecycle Manager
Subscribe
Rational Quality Manager
Subscribe
Rational Rhapsody Design Manager
Subscribe
Rational Software Architect Design Manager
Subscribe
Rational Team Concert
Subscribe
Rhapsody Model Manager
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-12407 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150431. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-09-17T00:31:41.218Z
Reserved: 2017-12-13T00:00:00
Link: CVE-2018-1828
No data.
Status : Modified
Published: 2019-06-27T14:15:10.207
Modified: 2024-11-21T04:00:28.197
Link: CVE-2018-1828
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD