CVE-2012-2169: IBM Rational Clearquest
Low severity, CVSS 3.5. EPSS: 1.4% chance of exploitation in the next 30 days.
Cross-site scripting (XSS) vulnerability in the file-upload functionality in the Web client in IBM Rational ClearQuest 7.1.x before 7.1.2.7 allows remote authenticated users to inject arbitrary web script or HTML via the File Description field.
Affected products
- IBM Rational Clearquest: version 7.1.1.1 only; version 7.1.1.2 only; version 7.1.1.3 only; version 7.1.1.4 only; version 7.1.1.5 only; version 7.1.1.6 only; …
Published 2012-08-17. Last modified 2026-06-16.