cbcvebase.
CVE-2020-4866
published 2021-03-04

CVE-2020-4866: IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering…

medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190742.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
ibmdoors_next
ibmdoors_next
ibmdoors_next
ibmengineering_lifecycle_management
ibmengineering_lifecycle_management
ibmengineering_lifecycle_management
ibmengineering_lifecycle_optimization
ibmengineering_lifecycle_optimization
ibmengineering_lifecycle_optimization
ibmengineering_test_management
ibmengineering_test_management
ibmengineering_test_management
ibmengineering_workflow_management
ibmengineering_workflow_management
ibmengineering_workflow_management
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_doors_next_generation
ibmrational_quality_manager
ibmrational_quality_manager
ibmrational_quality_manager
ibmrational_team_concert