Description
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 198235.
Remediation
References
Related Vulnerabilities
Drupal Core 4.6.x Security Bypass (4.6.0 - 4.6.3)
ownCloud Other Vulnerability (CVE-2014-2055)
SugarCRM Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-17308)
WordPress Plugin Border Loading Bar Cross-Site Scripting (1.0.1)
ReviveAdserver Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-9455)