Vulnerabilities > IBM > Rational Build Forge > 7.0.2

DATE CVE VULNERABILITY TITLE RISK
2011-02-16 CVE-2011-1034 Cross-Site Scripting vulnerability in IBM Rational Build Forge 7.0.2
Cross-site scripting (XSS) vulnerability in the UI in IBM Rational Build Forge 7.0.2 allows remote attackers to inject arbitrary web script or HTML via the mod parameter to the fullcontrol program.
network
ibm CWE-79
4.3
2008-05-09 CVE-2008-2122 Missing Release of Resource after Effective Lifetime vulnerability in IBM Rational Build Forge 7.0.2
IBM Rational Build Forge 7.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a port scan, which spawns multiple bfagent server processes that attempt to read data from closed sockets.
network
low complexity
ibm CWE-772
7.5