cbcvebase.

Ibm Rational Team Concert vulnerabilities

147 known vulnerabilities affecting ibm/rational_team_concert.

Total CVEs
147
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH9MEDIUM127LOW11

Vulnerabilities

Page 4 of 8
CVE-2021-29673P4MEDIUMCVSS 5.4v6.0.1v6.0.6+5 more2021-10-27
CVE-2021-29673 [MEDIUM] CWE-79 CVE-2021-29673: IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows user IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199482.
nvd
CVE-2021-29713P4MEDIUMCVSS 5.4v7.0v6.0.2+2 more2021-10-27
CVE-2021-29713 [MEDIUM] CWE-79 CVE-2021-29713: IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows user IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
nvd
CVE-2018-1492P4MEDIUMCVSS 6.8≥ 5.0, ≤ 5.0.2≥ 6.0.0, ≤ 6.0.5+9 more2018-07-10
CVE-2018-1492 [MEDIUM] CWE-384 CVE-2018-1492: IBM Jazz Foundation products could allow a user with physical access to the system to log in as anot IBM Jazz Foundation products could allow a user with physical access to the system to log in as another user due to the server's failure to properly log out from the previous session. IBM X-Force ID: 140977.
nvd
CVE-2018-1688P4MEDIUMCVSS 5.4≥ 5.0, ≤ 6.0.62019-03-14
CVE-2018-1688 [MEDIUM] CWE-79 CVE-2018-1688: IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 through 6.0.6) is vulnerabl IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 through 6.0.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145509.
nvd
CVE-2018-1762P4MEDIUMCVSS 5.4≥ 5.0.0, ≤ 5.0.2≥ 6.0.0, ≤ 6.0.62018-11-29
CVE-2018-1762 [MEDIUM] CWE-79 CVE-2018-1762: IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerab IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148616.
nvd
CVE-2017-1629P4MEDIUMCVSS 5.4≥ 4.0, ≤ 4.0.7≥ 5.0, ≤ 5.0.2+1 more2018-03-23
CVE-2017-1629 [MEDIUM] CWE-79 CVE-2017-1629: IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to c IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 133127.
nvd
CVE-2017-1655P4MEDIUMCVSS 5.4≥ 4.0, ≤ 4.0.7≥ 5.0, ≤ 5.0.2+1 more2018-03-23
CVE-2017-1655 [MEDIUM] CWE-79 CVE-2017-1655: IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to c IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 133379.
nvd
CVE-2017-1762P4MEDIUMCVSS 5.4≥ 4.0, ≤ 4.0.7≥ 5.0, ≤ 5.0.2+1 more2018-03-23
CVE-2017-1762 [MEDIUM] CWE-79 CVE-2017-1762: IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to c IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 136006.
nvd
CVE-2016-9701P4MEDIUMCVSS 5.4v4.0v4.0.0+18 more2017-07-05
CVE-2016-9701 [MEDIUM] CWE-79 CVE-2016-9701: IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows u IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 119529.
nvd
CVE-2017-1113P4MEDIUMCVSS 5.4v4.0v4.0.0+18 more2017-07-05
CVE-2017-1113 [MEDIUM] CWE-79 CVE-2017-1113: IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnera IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 121151.
nvd
CVE-2016-9746P4MEDIUMCVSS 5.4v4.0v4.0.0+18 more2017-07-05
CVE-2016-9746 [MEDIUM] CWE-79 CVE-2016-9746: IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability al IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 119821.
nvd
CVE-2016-9733P4MEDIUMCVSS 5.4v4.0v4.0.0+18 more2017-07-05
CVE-2016-9733 [MEDIUM] CWE-79 CVE-2016-9733: IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability al IBM Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 119762.
nvd
CVE-2019-4249P4MEDIUMCVSS 5.4≥ 6.0, ≤ 6.0.6.12019-06-27
CVE-2019-4249 [MEDIUM] CWE-79 CVE-2019-4249: IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scri IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159647.
nvd
CVE-2018-1766P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.5+9 more2018-10-29
CVE-2018-1766 [MEDIUM] CWE-79 CVE-2018-1766: IBM Team Concert (RTC) 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scriptin IBM Team Concert (RTC) 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148620.
nvd
CVE-2018-1558P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.62018-10-02
CVE-2018-1558 [MEDIUM] CWE-79 CVE-2018-1558: IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerabl IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142956.
nvd
CVE-2018-1394P4MEDIUMCVSS 5.4≥ 5.0.0, ≤ 5.0.2v5.0+7 more2018-08-20
CVE-2018-1394 [MEDIUM] CWE-79 CVE-2018-1394: Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows use Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138425.
nvd
CVE-2018-1408P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.5+9 more2018-07-10
CVE-2018-1408 [MEDIUM] CWE-79 CVE-2018-1408: IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scrip IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138446.
nvd
CVE-2018-1407P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.5+9 more2018-07-10
CVE-2018-1407 [MEDIUM] CWE-79 CVE-2018-1407: IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scrip IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138445.
nvd
CVE-2017-1237P4MEDIUMCVSS 5.4≥ 6.0.0, ≤ 6.0.5v5.0.1+7 more2018-07-06
CVE-2017-1237 [MEDIUM] CWE-79 CVE-2017-1237: IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124355.
nvd
CVE-2018-1521P4MEDIUMCVSS 5.4≥ 5.0, ≤ 5.0.2≥ 6.0, ≤ 6.0.5+9 more2018-07-10
CVE-2018-1521 [MEDIUM] CWE-79 CVE-2018-1521: IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scrip IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 141802.
nvd
Ibm Rational Team Concert vulnerabilities | cvebase