Required CVE Record Information
Description
IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 198441.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
5.4 | MEDIUM | 3.0 | CVSS:3.0/I:L/C:L/A:N/AC:L/S:C/AV:N/UI:R/PR:L/E:H/RL:O/RC:C |
Product Status
Learn moreVersions 3 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
Versions 5 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
Versions 6 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
Versions 5 Total
Default Status: unknown
affected
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- https://www.ibm.com/support/pages/node/6441803 x_transferred
- exchange.xforce.ibmcloud.com: ibm-engineering-cve202120519-xss (198441) vdb-entryx_transferred