CVEs (26)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request, an attacker could expl...Show more |
IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sen...Show more |
1Ibm 12Collaborative Lifecycle Management Doors NextEngineering Insights+9 moreJun 17, 2026 Apr 12, 2021 N/A· v4 5.4 MEDIUM· v3 4.3 MEDIUM· v2 IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to crede...Show more |
1Ibm 12Collaborative Lifecycle Management Doors NextEngineering Insights+9 moreJun 17, 2026 Apr 12, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 IBM Jazz Team Server products use weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 192422. |
1Ibm 12Collaborative Lifecycle Management Doors NextEngineering Insights+9 moreJun 17, 2026 Apr 12, 2021 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 IBM Jazz Team Server products contain an undisclosed vulnerability that could allow an authenticated user to present a customized message on the application which could be used to phish other users. IBM X-Force ID: 19241...Show more |
1Ibm 12Collaborative Lifecycle Management Doors NextEngineering Insights+9 moreJun 17, 2026 Apr 12, 2021 N/A· v4 5.4 MEDIUM· v3 4.3 MEDIUM· v2 IBM Jazz Team Server products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading t...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cre...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cre...Show more |
1Ibm 9Doors Next Engineering Lifecycle ManagementEngineering Requirements Quality Assistant On Premises+6 moreJun 17, 2026 Mar 4, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cre...Show more |
1Ibm 13Collaborative Lifecycle Management Doors NextEngineering Insights+10 moreJun 17, 2026 Jan 8, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to creden...Show more |
1Ibm 13Collaborative Lifecycle Management Doors NextEngineering Insights+10 moreJun 17, 2026 Jan 8, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to creden...Show more |
1Ibm 13Collaborative Lifecycle Management Doors NextEngineering Insights+10 moreJun 17, 2026 Jan 8, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to creden...Show more |
1Ibm 13Collaborative Lifecycle Management Doors NextEngineering Insights+10 moreJun 17, 2026 Jan 8, 2021 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 IBM Jazz Foundation Products could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the...Show more |
1Ibm 13Collaborative Lifecycle Management Doors NextEngineering Insights+10 moreJun 17, 2026 Jan 8, 2021 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 IBM Jazz Foundation Products could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the...Show more |
1Ibm 10Doors Next Engineering Requirements Management Doors NextEngineering Test Management+7 moreJun 17, 2026 Sep 2, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin...Show more |