Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Jazz Foundation
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-39059 1 Ibm 1 Jazz Foundation 2024-02-28 3.5 LOW 5.4 MEDIUM
IBM Jazz Foundation (IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 214619.
CVE-2019-4457 1 Ibm 1 Jazz Foundation 2024-02-28 4.0 MEDIUM 6.5 MEDIUM
IBM Jazz Foundation 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, and 6.0.6.1 could allow an authenticated user to obtain sensitive information that could be used in further attacks against the system. IBM X-Force ID: 163654.