Medium Severity
Security Bulletin: Multiple vulnerabilites affect IBM Engineering products.
Feb 26, 2021 7:01 pm EST
Categorized: Medium Severity
Share this post:
There are multiple vulnerabilities that are used by IBM Jazz Team Server affecting the following IBM Jazz Team Server based Applications: Engineering Lifecycle Management (ELM), Global Configuration Management (GCM), IBM Engineering Requirements Management DOORS Next (DOORS Next), IBM Engineering Requirements Quality Assistant On-Premises (RQA On-Prem), IBM Engineering Lifecycle Optimization – Engineering Insights (ENI), IBM Engineering Workflow Management (EWM), IBM Engineering Systems Design Rhapsody – Design Manager (RDM), IBM Engineering Systems Design Rhapsody – Model Manager (RMM).
Affected product(s) and affected version(s):
Affected Product(s) | Version(s) |
RDNG | 6.0.2 |
DOORS Next | 7.0 |
DOORS Next | 7.0.1 |
DOORS Next | 7.0.2 |
RDNG | 6.0.6.1 |
RDNG | 6.0.6 |
PUB | 7.0.1 |
PUB | 7.0.2 |
PUB | 7.0 |
EWM | 7.0.2 |
EWM | 7.0.1 |
RTC | 6.0.2 |
RTC | 6.0.6.1 |
EWM | 7.0 |
RTC | 6.0.6 |
Global Configuration Management | All |
ETM | 7.0.2 |
RQM | 6.0.6.1 |
ETM | 7.0.1 |
RQM | 6.0.6 |
ETM | 7.0.0 |
RQM | 6.0.2 |
IBM Engineering Requirements Quality Assistant On-Premises | All |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/6417585
Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect TXSeries for Multiplatforms
Apr 14, 2021 9:22 am EDT | Medium Severity
TXSeries for Multiplatforms has addressed the following vulnerabilities reported by IBM® Runtime Environment Java™ ...read more
Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM CICS TX on Cloud
Apr 14, 2021 9:21 am EDT | Medium Severity
IBM CICS TX on Cloud has addressed the following vulnerabilities reported by IBM® Runtime Environment Java™ ...read more
Security Bulletin: IBM InfoSphere Information Server is affected by a cross-site scripting vulnerability CVE-2020-4997
Apr 13, 2021 12:43 pm EDT | Medium Severity
A cross-site scripting vulnerability was addressed by IBM InfoSphere Information Server. ...read more