Description
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148614.
Remediation
References
Related Vulnerabilities
Python Integer Overflow or Wraparound Vulnerability (CVE-2010-1449)
MySQL CVE-2020-14836 Vulnerability (CVE-2020-14836)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-6289)
PostgreSQL Incorrect Authorization Vulnerability (CVE-2021-20229)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3370)