HTML Injection Vulnerability in IBM Jazz Team Server
CVE-2021-20543
5.4MEDIUM
What is CVE-2021-20543?
IBM Jazz Team Server versions 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 contain an HTML injection vulnerability that allows remote attackers to inject harmful HTML code. This injected code can execute in the web browser of a user accessing the compromised server, leading to potential exploitation within the security constraints of the hosting site. Organizations should ensure they have the latest security updates to mitigate this risk.
Affected Version(s)
Jazz Team Server 6.0.6
Jazz Team Server 6.0.6.1
Jazz Team Server 7.0