Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Engineering_requirements_quality_assistant_on\-Premises
(Ibm)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 29 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2021-03-04 | CVE-2021-20350 | IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194707. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-03-04 | CVE-2021-20340 | IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194451. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-03-04 | CVE-2020-4866 | IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190742. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-03-04 | CVE-2020-4863 | IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190566. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-03-04 | CVE-2020-4857 | IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190460. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-03-04 | CVE-2020-4856 | IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190459. | Doors_next, Engineering_lifecycle_management, Engineering_requirements_quality_assistant_on\-Premises, Engineering_test_management, Engineering_workflow_management, Global_configuration_management, Rational_doors_next_generation, Rational_quality_manager, Rational_team_concert | 5.4 | ||
2021-01-08 | CVE-2020-4667 | IBM Engineering Requirements Quality Assistant On-Premises could allow an authenticated user to obtain sensitive information due to improper input validation. IBM X-Force ID: 186282. | Engineering_requirements_quality_assistant_on\-Premises | 4.3 | ||
2021-01-08 | CVE-2020-4666 | IBM Engineering Requirements Quality Assistant On-Premises is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186281. | Engineering_requirements_quality_assistant_on\-Premises | 5.4 | ||
2021-01-08 | CVE-2020-4664 | IBM Engineering Requirements Quality Assistant On-Premises is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186235. | Engineering_requirements_quality_assistant_on\-Premises | 5.4 | ||
2021-01-08 | CVE-2020-4663 | IBM Engineering Requirements Quality Assistant On-Premises is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186234. | Engineering_requirements_quality_assistant_on\-Premises | 5.4 |