Description
IBM Rational Team Concert 5.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 154137.
Remediation
References
Related Vulnerabilities
YetiForce CRM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-4092)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1484)
Oracle Database Server CVE-2014-6546 Vulnerability (CVE-2014-6546)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2196)