CVE-2016-5897
published 2017-02-01CVE-2016-5897: IBM Jazz Reporting Service (JRS) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in…
medium5.4CVSS 3.0
AVNACLPRLUIRSCCLILAN
IBM Jazz Reporting Service (JRS) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |