CVE-2015-7467
17.01.2016, 05:59
Cross-site scripting (XSS) vulnerability in Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Vendor | Product | Version |
---|---|---|
ibm | jazz_reporting_service | 5.0 |
ibm | jazz_reporting_service | 5.0.1 |
ibm | jazz_reporting_service | 5.0.2 |
ibm | jazz_reporting_service | 6.0 |
𝑥
= Vulnerable software versions