3.5
CVSSv2

CVE-2016-6037

Published: 10/05/2017 Updated: 15/05/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

IBM Rational Team Concert (RTC) is vulnerable to HTML injection. A remote attacker with project administrator privileges could send a project that contains malicious HTML code, which when the project is viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 116918.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm rational team concert 4.0.2

ibm rational team concert 4.0.3

ibm rational team concert 4.0.4

ibm rational team concert 4.0.5

ibm rational team concert 6.0.1

ibm rational team concert 6.0.2

ibm rational team concert 6.0.3

ibm rational team concert 4.0.1

ibm rational team concert 4.0.6

ibm rational team concert 5.0.0

ibm rational team concert 5.0.2

ibm rational team concert 6.0.0

ibm rational team concert 4.0.0

ibm rational team concert 4.0.7

ibm rational team concert 5.0.1

ibm rational quality manager 4.0.2

ibm rational quality manager 4.0.3

ibm rational quality manager 4.0.4

ibm rational quality manager 4.0.5

ibm rational quality manager 5.0.2

ibm rational quality manager 6.0.0

ibm rational quality manager 6.0.2

ibm rational quality manager 4.0.1

ibm rational quality manager 4.0.6

ibm rational quality manager 5.0.0

ibm rational quality manager 6.0.1

ibm rational quality manager 4.0.0

ibm rational quality manager 4.0.7

ibm rational quality manager 5.0.1