CVE-2018-1507: XSS
IBM DOORS Next Generation (DNG/RRC) 6.0.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 141415.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1507?
CVE-2018-1507 is classified with a medium severity due to its potential to leak sensitive information through cross-site scripting.
How do I fix CVE-2018-1507?
To fix CVE-2018-1507, upgrade IBM DOORS Next Generation to a version that addresses the vulnerability.
What are the implications of CVE-2018-1507?
The implications of CVE-2018-1507 involve the risk of credential disclosure within trusted sessions due to the ability to embed malicious JavaScript.
Who is affected by CVE-2018-1507?
CVE-2018-1507 affects users of IBM Rational DOORS Next Generation version 6.0.5.
Can CVE-2018-1507 be exploited remotely?
Yes, CVE-2018-1507 can be exploited remotely since it targets the Web UI of the application.