Ibm Rational Doors vulnerabilities

8 known vulnerabilities affecting ibm/rational_doors.

Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM7

Vulnerabilities

Page 1 of 1
CVE-2018-1457CRITICALCVSS 9.8v9.5.1v9.5.1.1+36 more2018-06-27
CVE-2018-1457 [CRITICAL] CVE-2018-1457: An undisclosed vulnerability in IBM Rational DOORS 9.5.1 through 9.6.1.10 application allows an atta An undisclosed vulnerability in IBM Rational DOORS 9.5.1 through 9.6.1.10 application allows an attacker to gain DOORS administrator privileges. IBM X-Force ID: 140208.
cvelistv5nvd
CVE-2017-1540MEDIUMCVSS 5.4v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1540 [MEDIUM] CWE-79 CVE-2017-1540: IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows us IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 130808.
cvelistv5nvd
CVE-2017-1532MEDIUMCVSS 5.4v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1532 [MEDIUM] CWE-79 CVE-2017-1532: IBM DOORS 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embe IBM DOORS 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 130411.
cvelistv5nvd
CVE-2017-1563MEDIUMCVSS 5.4v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1563 [MEDIUM] CWE-79 CVE-2017-1563: IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows us IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 131763.
cvelistv5nvd
CVE-2017-1516MEDIUMCVSS 5.4v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1516 [MEDIUM] CWE-20 CVE-2017-1516: IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 129826.
cvelistv5nvd
CVE-2017-1515MEDIUMCVSS 4.3v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1515 [MEDIUM] CWE-200 CVE-2017-1515: IBM Doors Web Access 9.5 and 9.6 could allow an authenticated user to obtain sensitive information f IBM Doors Web Access 9.5 and 9.6 could allow an authenticated user to obtain sensitive information from HTTP internal server error responses. IBM X-Force ID: 129825.
cvelistv5nvd
CVE-2017-1567MEDIUMCVSS 5.4v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1567 [MEDIUM] CWE-79 CVE-2017-1567: IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows us IBM Doors Web Access 9.5 and 9.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 131769.
cvelistv5nvd
CVE-2017-1545MEDIUMCVSS 6.8v9.5v9.5.0.1+40 more2018-01-26
CVE-2017-1545 [MEDIUM] CVE-2017-1545: IBM Doors Web Access 9.5 and 9.6 could allow an attacker with physical access to the system to log i IBM Doors Web Access 9.5 and 9.6 could allow an attacker with physical access to the system to log into the application using previously stored credentials. IBM X-Force ID: 130914.
cvelistv5nvd