Cross-site Scripting Vulnerability in IBM Rational ClearQuest Products
CVE-2012-2205

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
17 August 2012

Summary

A Cross-site Scripting (XSS) vulnerability exists in IBM Rational ClearQuest versions prior to 7.1.2.7 and 8.0.0.3. This security flaw enables remote authenticated users to inject arbitrary web scripts or HTML code through a workspace query, potentially compromising the application's security and allowing for unauthorized actions within user sessions.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.