Cross-Site Scripting Vulnerability in IBM Rational ClearQuest
CVE-2012-5757

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
21 March 2013

What is CVE-2012-5757?

A cross-site scripting vulnerability exists in the Web Client of IBM Rational ClearQuest versions 7.1.x prior to 7.1.2.10 and 8.x prior to 8.0.0.6. This flaw can allow remote attackers to execute arbitrary web scripts or HTML by tricking users into clicking specially crafted URLs. Successful exploitation may lead to unauthorized actions within the context of the user's session.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.