CVE-2020-4547
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 183315.
Affected (30)
Products: Ibm: Collaborative Lifecycle Management, Engineering Insights, Engineering Lifecycle Management, Engineering Requirements Management Doors Next, Engineering Test Management, Engineering Workflow Management, Global Configuration Management, Rational Engineering Lifecycle Manager, Rational Quality Manager, Rhapsody Design Manager, Rhapsody Model Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.0.2 | |
| Version 7.0 | |
| Version 7.0 | |
| Version 6.0.2 | |
| Version 7.0.0 | |
| Version 6.0.2 | |
| All versions | |
| Version 6.0.2 | |
| Version 6.0.2 | |
| Version 6.0.2 | |
| Version 6.0.2 |
References (4)
Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.