Vulnerabilities > IBM > Engineering Requirements Management Doors Next > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-03-03 CVE-2024-43169 Download of Code Without Integrity Check vulnerability in IBM Engineering Requirements Management Doors Next 7.0.2/7.0.3/7.1
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file without verifying the integrity of the code.
network
low complexity
ibm CWE-494
6.5
2021-04-12 CVE-2021-20519 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server products are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-04-12 CVE-2020-4964 Unspecified vulnerability in IBM products
IBM Jazz Team Server products contain an undisclosed vulnerability that could allow an authenticated user to present a customized message on the application which could be used to phish other users.
network
low complexity
ibm
4.3
2021-04-12 CVE-2020-4920 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server products are vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-01-27 CVE-2021-20357 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-01-27 CVE-2020-4865 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-01-27 CVE-2020-4855 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-01-27 CVE-2020-4547 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM products
IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim.
network
low complexity
ibm CWE-1021
5.4
2021-01-27 CVE-2020-4524 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2020-09-02 CVE-2020-4546 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4