CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

ibm

rhapsody_model_manager

23 known vulnerabilities · sorted by CVSS score

CVE-2020-4965
HIGH7.5

IBM Jazz Team Server products use weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 192422.

ibm / collaborative_lifecycle_management+37
Network
Published Apr 12, 2021
Page 1 of 2
CVE-2020-4733
MEDIUM5.4

IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188127.

ibm / collaborative_lifecycle_management+32
Network
Published Jan 8, 2021
CVE-2018-1892
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152156.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2020-4547
MEDIUM5.4

IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 183315.

ibm / collaborative_lifecycle_management+29
Network
Published Jan 27, 2021
CVE-2018-1760
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148614.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2020-4920
MEDIUM5.4

IBM Jazz Team Server products are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 191396.

ibm / collaborative_lifecycle_management+37
Network
Published Apr 12, 2021
CVE-2018-1827
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150430.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2021-20357
MEDIUM5.4

IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194963.

ibm / collaborative_lifecycle_management+29
Network
Published Jan 27, 2021
CVE-2018-1758
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148605.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2018-1893
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152157.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2018-1690
MEDIUM5.4

IBM Rhapsody Model Manager 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145510.

ibm / rhapsody_model_manager
Network
Published Aug 7, 2018
CVE-2018-1826
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150429.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2021-20519
MEDIUM5.4

IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 198441.

ibm / collaborative_lifecycle_management+37
Network
Published Apr 12, 2021
CVE-2020-4697
MEDIUM5.4

IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186790.

ibm / collaborative_lifecycle_management+32
Network
Published Jan 8, 2021
CVE-2020-4865
MEDIUM5.4

IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190741.

ibm / collaborative_lifecycle_management+29
Network
Published Jan 27, 2021
CVE-2020-4524
MEDIUM5.4

IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 182434.

ibm / collaborative_lifecycle_management+29
Network
Published Jan 27, 2021
CVE-2018-1828
MEDIUM5.4

IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150431.

ibm / rational_collaborative_lifecycle_management+7
Network
Published Jun 27, 2019
CVE-2020-4855
MEDIUM5.4

IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190457.

ibm / collaborative_lifecycle_management+29
Network
Published Jan 27, 2021
CVE-2020-4691
MEDIUM5.4

IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186698.

ibm / collaborative_lifecycle_management+32
Network
Published Jan 8, 2021
CVE-2020-4964
MEDIUM4.3

IBM Jazz Team Server products contain an undisclosed vulnerability that could allow an authenticated user to present a customized message on the application which could be used to phish other users. IBM X-Force ID: 192419.

ibm / collaborative_lifecycle_management+37
Network
Published Apr 12, 2021