CVE-2024-28796
17.07.2024, 19:15
IBM ClearQuest (CQ) 9.1 through 9.1.0.6 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 286833.
Vendor | Product | Version |
---|---|---|
ibm | rational_clearquest | 9.1 ≤ 𝑥 < 9.1.0.7 |
𝑥
= Vulnerable software versions