cbcvebase.
CVE-2016-2986
published 2016-11-25

CVE-2016-2986: Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 6.x before 6.0.1 iFix6, Rational Quality Manager 6.x before 6.0.1…

medium5.4CVSS 3.0
AVNACLPRLUIRSCCLILAN
Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 6.x before 6.0.1 iFix6, Rational Quality Manager 6.x before 6.0.1 iFix6, Rational Team Concert 6.x before 6.0.1 iFix6, Rational DOORS Next Generation 6.x before 6.0.1 iFix6, Rational Engineering Lifecycle Manager 6.x before 6.0.1 iFix6, and Rational Rhapsody Design Manager 6.x before 6.0.1 iFix6 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

Affected

15 ranges
VendorProductVersion rangeFixed in
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_engineering_lifecycle_manager
ibmrational_engineering_lifecycle_manager
ibmrational_engineering_lifecycle_manager
ibmrational_quality_manager
ibmrational_quality_manager
ibmrational_quality_manager
ibmrational_rhapsody_design_manager
ibmrational_rhapsody_design_manager
ibmrational_rhapsody_design_manager
ibmrational_team_concert
ibmrational_team_concert
ibmrational_team_concert