Source |
Fortinet |
Identifiant |
203265 |
Date de publication |
2016-10-17 11:59:12 (vue: 2016-10-17 11:59:12) |
Titre |
IBM Rational Collaborative Lifecycle Management XSS Vulnerability |
Texte |
Summary
At the beginning of this year, I discovered and reported a Cross-Site Scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management (CLM). This month IBM released a security bulletin that contains the fix for this vulnerability.
In this blog, I want to share the details of this vulnerability.
How to Reproduce
To reproduce this vulnerability, you can follow the steps below:
Sign into CLM with a user account, such as “chbest2â€, with the permission "JazzAdmins".
Then create a new user... |
Notes |
|
Envoyé |
Oui |
Condensat |
account beginning below: blog bulletin can clm collaborative contains create cross details discovered fix follow how ibm jazzadmins lifecycle management month new permission rational released reported reproduce scripting security share sign site steps such summary then user vulnerability want xss year “chbest2†|
Tags |
|
Stories |
|
Move |
|