CVE-2017-1238
- EPSS 0.16%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:33
IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials...
CVE-2017-1239
- EPSS 0.13%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:33
IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 could reveal sensitive information in HTTP 500 Internal Server Error responses. IBM X-Force ID: 124357.
CVE-2017-1242
- EPSS 0.13%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:34
IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting si...
CVE-2017-1248
- EPSS 0.18%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:34
IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting si...
CVE-2017-1329
- EPSS 0.13%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:43
IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting si...
CVE-2017-1488
- EPSS 0.19%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:21:57
An undisclosed vulnerability in Jazz common products exists with potential for information disclosure. IBM X-Force ID: 128627.
CVE-2017-1509
- EPSS 0.14%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:22:00
IBM Jazz Foundation products could allow an authenticated user to obtain sensitive information from a stack trace that could be used to aid future attacks. IBM X-Force ID: 129719.
CVE-2017-1559
- EPSS 0.18%
- Published 06.07.2018 14:29:00
- Last modified 21.11.2024 03:22:04
Multiple IBM Rational products could disclose sensitive information by an attacker that intercepts vulnerable requests. IBM X-Force ID: 131758.
CVE-2017-1317
- EPSS 0.18%
- Published 03.07.2018 19:29:01
- Last modified 21.11.2024 03:21:42
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alt...
CVE-2017-1561
- EPSS 0.18%
- Published 03.07.2018 19:29:01
- Last modified 21.11.2024 03:22:04
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alt...