Skip to main content

Vendor/product archive

ibm / engineering_requirements_quality_assistant_on-premises CVEs

Beta · best-effort

29 CVEs tagged to ibm / engineering_requirements_quality_assistant_on-premises0 Critical, 2 High, 27 Medium, 0 Low, 0 Unrated.

CVE-2021-29844

Published Oct 27, 2021

IBM Jazz Team Server products is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia…

CVSS 8.8 · High

CVE-2021-20507

Published Jul 19, 2021

IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alte…

CVSS 5.4 · Medium

CVE-2021-20520

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20518

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20506

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20504

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20503

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20502

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose…

CVSS 7.1 · High

CVE-2021-20447

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20352

Published Mar 30, 2021

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu…

CVSS 5.4 · Medium

CVE-2021-20351

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2021-20350

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2021-20340

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4975

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4866

Published Mar 4, 2021

IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi…

CVSS 5.4 · Medium

CVE-2020-4863

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium

CVE-2020-4857

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium

CVE-2020-4856

Published Mar 4, 2021

IBM Engineering products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended…

CVSS 5.4 · Medium
Showing 1-25 of 29 CVEsPage 1 of 2