Vulnerabilities > IBM > Engineering Test Management

DATE CVE VULNERABILITY TITLE RISK
2020-09-02 CVE-2020-4445 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2020-08-04 CVE-2020-4410 Unspecified vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products could allow an authenticated user to send a specially crafted HTTP GET request to read attachments on the server that they should not have access to.
network
low complexity
ibm
4.3
2020-08-04 CVE-2020-4396 Cross-site Scripting vulnerability in IBM Engineering Test Management 7.0.0
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2020-07-16 CVE-2019-4748 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4