CVE-2017-1629: XSS
IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 133127.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2017-1629.
What is the severity of CVE-2017-1629?
The severity of CVE-2017-1629 is medium with a severity value of 5.4.
What software is affected by CVE-2017-1629?
IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) as well as other IBM Rational software versions are affected.
What is the impact of CVE-2017-1629?
CVE-2017-1629 allows users to embed arbitrary JavaScript code in the Web UI, potentially leading to credentials disclosure.
Where can I find more information about CVE-2017-1629?
You can find more information about CVE-2017-1629 on the IBM support website, SecurityFocus, and IBM X-Force Exchange.