Description
IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 182397.
Remediation
References
Related Vulnerabilities
phpMyFAQ Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-15808)
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-8140)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-19968)
TYPO3 Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-6146)
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (1.5.5)