Vulnerabilities > IBM > Rational Rhapsody Design Manager > 6.0

DATE CVE VULNERABILITY TITLE RISK
2019-06-27 CVE-2018-1760 Cross-site Scripting vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-06-27 CVE-2018-1758 Cross-site Scripting vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-06-27 CVE-2018-1734 Information Exposure vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 discloses sensitive information in error messages that may be used by a malicious user to orchestrate further attacks.
network
low complexity
ibm CWE-200
4.3
2019-03-14 CVE-2018-1952 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation (IBM Rational Engineering Lifecycle Manager 5.0 through 6.0.6) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-03-14 CVE-2018-1916 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation (IBM Rational Engineering Lifecycle Manager 5.0 through 6.0.6) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-03-14 CVE-2018-1688 Cross-site Scripting vulnerability in IBM products
IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 through 6.0.6) is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-10-02 CVE-2018-1558 Cross-site Scripting vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-07-19 CVE-2018-1587 Information Exposure vulnerability in IBM products
IBM Rational Rhapsody Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 and IBM Rational Software Architect Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.1 could reveal technical error messages to allow an adversary to gain information about the application and database that could be used to conduct further attacks.
network
low complexity
ibm CWE-200
4.3
2018-07-19 CVE-2018-1585 Cross-site Scripting vulnerability in IBM products
IBM Rational Rhapsody Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 and IBM Rational Software Architect Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.1 are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2018-07-19 CVE-2018-1536 Cross-site Scripting vulnerability in IBM products
IBM Rational Rhapsody Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 and IBM Rational Software Architect Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.1 are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4