CVE Published: 10/05/2017 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: ibm |
Vendor: IBM Corporation |
Product: Rational Collaborative Lifecycle Management Status : PUBLISHED
CVE-2016-6037 Description
IBM Rational Team Concert (RTC) is vulnerable to HTML injection. A remote attacker with project administrator privileges could send a project that contains malicious HTML code, which when the project is viewed, would be executed in the victim\'s Web browser within the security context of the hosting site. IBM X-Force ID: 116918.