Cross-Site Scripting Vulnerability in IBM Rational ClearQuest
CVE-2012-5757
Currently unrated
What is CVE-2012-5757?
A cross-site scripting vulnerability exists in the Web Client of IBM Rational ClearQuest versions 7.1.x prior to 7.1.2.10 and 8.x prior to 8.0.0.6. This flaw can allow remote attackers to execute arbitrary web scripts or HTML by tricking users into clicking specially crafted URLs. Successful exploitation may lead to unauthorized actions within the context of the user's session.