IBM Jazz Reporting Service(JRS)是美国IBM公司的一套用于发现跨项目报表的应用程序,它可与IBM Rational CLM的Rational解决方案(用于管理开发项目的所有生命周期)集成使用,CLM用户可在仪表板中访问JRS提供的报表,包括显示所有项目的状态,并跨应用程序、跨项目(甚至跨时间表)来汇聚数据。 IBM JRS中存在跨站脚本漏洞。远程攻击者可利用该漏洞向Web UI中注入任意的JavaScript代码。以下版本受到影响:IBM Jazz Reporting Ser
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Jazz Reporting Service | 5.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2016-9733 | IBM Rational Team Concert和Rational Collaborative Lifecycle Management 跨站脚本漏洞 | |
| CVE-2017-1269 | IBM Security Guardium SQL注入漏洞 | |
| CVE-2017-1258 | IBM Security Guardium 安全漏洞 | |
| CVE-2017-1256 | IBM Security Guardium 跨站脚本漏洞 | |
| CVE-2017-1217 | IBM WebSphere Portal 跨站脚本漏洞 | |
| CVE-2016-0238 | IBM Security Guardium 信息泄露漏洞 | |
| CVE-2017-1208 | IBM Maximo Asset Management 跨站脚本漏洞 | |
| CVE-2017-1207 | IBM Integration Bus 信息泄露漏洞 | |
| CVE-2017-1176 | IBM Maximo Asset Management 安全漏洞 | |
| CVE-2017-1175 | IBM Maximo Asset Management SQL注入漏洞 | |
| CVE-2017-1113 | IBM Rational Team Concert和Rational Collaborative Lifecycle Management 跨站脚本漏洞 | |
| CVE-2016-9746 | IBM Rational Team Concert 跨站脚本漏洞 | |
| CVE-2016-9700 | 多款IBM产品Jazz Foundation 信息泄露漏洞 | |
| CVE-2016-9701 | IBM Rational Team Concert和Rational Collaborative Lifecycle Management 跨站脚本漏洞 | |
| CVE-2017-1264 | IBM Security Guardium 授权问题漏洞 | |
| CVE-2017-1254 | IBM Security Guardium 安全漏洞 | |
| CVE-2017-1253 | IBM Security Guardium 操作系统命令注入漏洞 | |
| CVE-2017-1157 | IBM Jazz Reporting Service 信息泄露漏洞 | |
| CVE-2017-1144 | IBM Integration Bus 安全漏洞 | |
| CVE-2017-1096 | IBM Jazz Reporting Service 跨站脚本漏洞 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet