CVE-2016-2888
- EPSS 0.21%
- Published 08.07.2016 01:59:09
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web scr...
CVE-2016-0350
- EPSS 0.17%
- Published 08.07.2016 01:59:08
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web scr...
CVE-2016-0315
- EPSS 0.47%
- Published 08.07.2016 01:59:07
- Last modified 12.04.2025 10:46:40
The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 maintain session ID validity after a logout action, which allows remote authenticated users to hijack ses...
CVE-2016-0314
- EPSS 0.15%
- Published 08.07.2016 01:59:06
- Last modified 12.04.2025 10:46:40
The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allow remote authenticated users to conduct clickjacking attacks via unspecified vectors.
CVE-2016-0313
- EPSS 0.17%
- Published 08.07.2016 01:59:05
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web scr...
CVE-2015-7464
- EPSS 0.87%
- Published 29.01.2016 11:59:00
- Last modified 12.04.2025 10:46:40
Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote attackers to cause a denial of service (Report Builder server outage) via a crafted request to a Report B...
CVE-2015-7470
- EPSS 0.23%
- Published 17.01.2016 05:59:06
- Last modified 12.04.2025 10:46:40
Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors, as demonstrated by login in...
CVE-2015-7469
- EPSS 0.12%
- Published 17.01.2016 05:59:06
- Last modified 12.04.2025 10:46:40
Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to bypass intended read-only restrictions by leveraging a JazzGuest role.
CVE-2015-7468
- EPSS 0.12%
- Published 17.01.2016 05:59:05
- Last modified 12.04.2025 10:46:40
Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to bypass intended restrictions on administrator tasks via unspecified vectors.
CVE-2015-7467
- EPSS 0.17%
- Published 17.01.2016 05:59:04
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to inject arbitrary web script or HTML vi...