Skip to main content

Vendor/product archive

ibm / doors_next CVEs

Beta · best-effort

26 CVEs tagged to ibm / doors_next1 Critical, 2 High, 23 Medium, 0 Low, 0 Unrated.

CVE-2024-41787

Published Jan 10, 2025

IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a speciall…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-45192

Published Jun 6, 2024

IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-20351

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2021-20350

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2021-20340

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4975

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4866

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4863

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium

CVE-2020-4857

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium

CVE-2020-4856

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium

CVE-2020-4546

Published Sep 2, 2020

IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the…

CVSS 5.4 · Medium

CVE-2020-4522

Published Sep 2, 2020

IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the…

CVSS 5.4 · Medium

CVE-2020-4445

Published Sep 2, 2020

IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the…

CVSS 5.4 · Medium

CVE-2019-4748

Published Jul 16, 2020

IBM Jazz Team Server based Applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the…

CVSS 5.4 · Medium
Showing 1-25 of 26 CVEsPage 1 of 2