Cross-Site Scripting Vulnerability in IBM Jazz Foundation and Engineering Products
CVE-2020-4542 
5.4MEDIUM
What is CVE-2020-4542?
IBM Jazz Foundation and IBM Engineering products are susceptible to a cross-site scripting vulnerability that permits attackers to inject arbitrary JavaScript code through the Web UI. This exploitation can manipulate the application’s intended functionality and may lead to the exposure of sensitive user credentials within a trusted session, raising significant security concerns for users.
Affected Version(s)
Rational Rhapsody Design Manager 6.0.2
Rational Rhapsody Design Manager 7.0