CVE-2017-1169: XSS
IBM DOORS next Generation (DNG/RRC) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123188.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1169?
CVE-2017-1169 is considered a moderate severity vulnerability due to potential credential disclosure risks.
How do I fix CVE-2017-1169?
To address CVE-2017-1169, apply the latest security patches or updates provided by IBM for the affected versions.
Which versions of software are affected by CVE-2017-1169?
CVE-2017-1169 affects multiple versions of IBM Rational Collaborative Lifecycle Management, specifically versions 4.0 through 6.0.4.
How does CVE-2017-1169 impact users?
CVE-2017-1169 allows attackers to execute arbitrary JavaScript code, potentially leading to unauthorized access to user credentials.
Is there a workaround for CVE-2017-1169?
Currently, no specific workaround is recommended; applying patches is the best method to mitigate the vulnerability.