Description
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159647.
Remediation
References
Related Vulnerabilities
WordPress Plugin Ad-Manager Open Redirect (1.1.2)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-1000356)
WebLogic Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-21350)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4549)
Atlassian Jira Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-20405)