Description
IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138446.
Remediation
References
Related Vulnerabilities
WordPress Plugin Embed PDF Cross-Site Scripting (1.0.6)
Joomla CVE-2018-17859 Vulnerability (CVE-2018-17859)
WordPress Plugin AppPresser-Mobile App Framework Security Bypass (4.3.2)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-2572)
Oracle HTTP Server NULL Pointer Dereference Vulnerability (CVE-2020-1967)