CVE Vulnerabilities

CVE-2016-0314

Published: Jul 08, 2016 | Modified: Apr 12, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allow remote authenticated users to conduct clickjacking attacks via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
Jazz_reporting_serviceIbm5.0 (including)5.0 (including)
Jazz_reporting_serviceIbm5.0.1 (including)5.0.1 (including)
Jazz_reporting_serviceIbm5.0.2 (including)5.0.2 (including)
Jazz_reporting_serviceIbm6.0 (including)6.0 (including)
Jazz_reporting_serviceIbm6.0.1 (including)6.0.1 (including)

References