Vulnerabilities > IBM > Rational Collaborative Lifecycle Management > 6.0.2

DATE CVE VULNERABILITY TITLE RISK
2021-07-28 CVE-2020-4974 Server-Side Request Forgery (SSRF) vulnerability in IBM products
IBM Jazz Foundation products are vulnerable to server side request forgery (SSRF).
network
low complexity
ibm CWE-918
6.5
2021-07-28 CVE-2020-5004 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2020-09-02 CVE-2020-4546 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2020-09-02 CVE-2020-4522 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2020-09-02 CVE-2020-4445 Cross-site Scripting vulnerability in IBM products
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2019-06-27 CVE-2019-4252 Path Traversal vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
7.5
2019-06-27 CVE-2019-4250 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-06-27 CVE-2019-4249 Cross-site Scripting vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-06-27 CVE-2019-4084 Unspecified vulnerability in IBM products
IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) could allow an authenticated user to obtain sensitive information from CLM Applications that could be used in further attacks against the system.
network
low complexity
ibm
4.3
2019-06-27 CVE-2019-4083 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4