Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Rational Quality Manager
Total 202 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-5404 1 Ibm 3 Rational Quality Manager, Rational Requirements Composer, Rational Team Concert 2024-11-21 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in the search implementation in IBM Rational Quality Manager (RQM) 2.0 through 2.0.1.1, 3.x before 3.0.1.6 iFix 1, and 4.x before 4.0.5, as used in Rational Team Concert, Rational Requirements Composer, and other products, allows remote authenticated users to inject arbitrary web script or HTML via vectors involving an IFRAME element.
CVE-2010-4094 1 Ibm 2 Rational Quality Manager, Rational Test Lab Manager 2024-11-21 5.0 MEDIUM N/A
The Tomcat server in IBM Rational Quality Manager and Rational Test Lab Manager has a default password for the ADMIN account, which makes it easier for remote attackers to execute arbitrary code by leveraging access to the manager role. NOTE: this might overlap CVE-2009-3548.