cbcvebase.

Ibm Rational Engineering Lifecycle Manager vulnerabilities

141 known vulnerabilities affecting ibm/rational_engineering_lifecycle_manager.

Total CVEs
141
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH12MEDIUM124LOW5

Vulnerabilities

Page 5 of 8
CVE-2017-1335P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-10-03
CVE-2017-1335 [MEDIUM] CWE-79 CVE-2017-1335: IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126243.
nvd
CVE-2017-1324P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-10-03
CVE-2017-1324 [MEDIUM] CWE-79 CVE-2017-1324: IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 125975.
nvd
CVE-2017-1429P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-10-03
CVE-2017-1429 [MEDIUM] CWE-79 CVE-2017-1429: IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 127587.
nvd
CVE-2017-1334P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-10-03
CVE-2017-1334 [MEDIUM] CWE-79 CVE-2017-1334: IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126242.
nvd
CVE-2017-1364P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-10-03
CVE-2017-1364 [MEDIUM] CWE-79 CVE-2017-1364: IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126857.
nvd
CVE-2017-1168P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-08-10
CVE-2017-1168 [MEDIUM] CWE-79 CVE-2017-1168: IBM Rational Engineering Lifecycle Manager 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. IBM Rational Engineering Lifecycle Manager 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123187.
nvd
CVE-2016-9747P4MEDIUMCVSS 5.4v4.0.3v4.0.4+13 more2017-06-22
CVE-2016-9747 [MEDIUM] CWE-79 CVE-2016-9747: IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2019-4249P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2019-4249 [MEDIUM] CWE-79 CVE-2019-4249: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159647.
nvd
CVE-2018-1558P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.62018-10-02
CVE-2018-1558 [MEDIUM] CWE-79 CVE-2018-1558: IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerabl IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142956.
nvd
CVE-2018-1560P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.6+10 more2018-09-25
CVE-2018-1560 [MEDIUM] CWE-79 CVE-2018-1560: IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to c IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142958.
nvd
CVE-2018-1659P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.6+10 more2018-09-25
CVE-2018-1659 [MEDIUM] CWE-79 CVE-2018-1659: IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to c IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 144885.
nvd
CVE-2018-1394P4MEDIUMCVSS 5.4≥ 5.0.0, ≤ 5.0.2≥ 6.0.0, ≤ 6.0.5+9 more2018-08-20
CVE-2018-1394 [MEDIUM] CWE-79 CVE-2018-1394: Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows use Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138425.
nvd
CVE-2017-1237P4MEDIUMCVSS 5.4≥ 6.0.0, ≤ 6.0.5v5.0.1+7 more2018-07-06
CVE-2017-1237 [MEDIUM] CWE-79 CVE-2017-1237: IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124355.
nvd
CVE-2016-2986P4MEDIUMCVSS 5.4v6.0.0v6.0.1+1 more2016-11-25
CVE-2016-2986 [MEDIUM] CWE-79 CVE-2016-2986: Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 6.x befo Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 6.x before 6.0.1 iFix6, Rational Quality Manager 6.x before 6.0.1 iFix6, Rational Team Concert 6.x before 6.0.1 iFix6, Rational DOORS Next Generation 6.x before 6.0.1 iFix6, Rational Engineering Lifecycle Manager 6.x before 6.0.1 iFix6, and Rational Rhapsody Des
nvd
CVE-2018-1892P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1892 [MEDIUM] CWE-79 CVE-2018-1892: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152156.
nvd
CVE-2018-1826P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1826 [MEDIUM] CWE-79 CVE-2018-1826: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150429.
nvd
CVE-2018-1893P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1893 [MEDIUM] CWE-79 CVE-2018-1893: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152157.
nvd
CVE-2018-1827P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1827 [MEDIUM] CWE-79 CVE-2018-1827: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150430.
nvd
CVE-2018-1758P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1758 [MEDIUM] CWE-79 CVE-2018-1758: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148605.
nvd
CVE-2018-1760P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2018-1760 [MEDIUM] CWE-79 CVE-2018-1760: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148614.
nvd