CVE-2011-1029: XSS
Published Feb 14, 2011
·Updated
Cross-site scripting (XSS) vulnerability in IBM Rational Team Concert (RTC) 2.0.0.x allows remote authenticated users to inject arbitrary web script or HTML via the name of a shared report.
Affected Software
2 affected components
IBM Rational Team Concert=2.0.0.2
IBM Rational Team Concert=2.0.0.1
Event History
Feb 14, 2011
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1029?
CVE-2011-1029 is considered to be of medium severity due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2011-1029?
To mitigate CVE-2011-1029, ensure that your IBM Rational Team Concert has been updated to a version that addresses this vulnerability.
3
Who is affected by CVE-2011-1029?
CVE-2011-1029 affects users of IBM Rational Team Concert versions 2.0.0.1 and 2.0.0.2.
4
What type of vulnerability is CVE-2011-1029?
CVE-2011-1029 is a cross-site scripting (XSS) vulnerability allowing the injection of arbitrary web scripts.
5
Can CVE-2011-1029 be exploited by unauthenticated users?
No, CVE-2011-1029 can only be exploited by remote authenticated users.