Vulnerabilities > IBM > Rational Engineering Lifecycle Manager

DATE CVE VULNERABILITY TITLE RISK
2021-03-30 CVE-2021-20503 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation Products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-03-30 CVE-2021-20502 XXE vulnerability in IBM products
IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
5.5
2021-03-30 CVE-2021-20447 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation Products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-03-30 CVE-2021-20352 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation Products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-01-27 CVE-2021-20357 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-01-27 CVE-2020-4865 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-01-27 CVE-2020-4855 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-01-27 CVE-2020-4547 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM products
IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-1021
3.5
2021-01-27 CVE-2020-4524 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2021-01-08 CVE-2020-4733 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation products are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5