📦 Jazz For Service Management

by Ibm

🔍 What is Jazz For Service Management?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-29831

HIGH CVSS 8.1 Sep 21, 2021

This CVE describes an XML External Entity (XXE) vulnerability in IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI. Attackers can exploit this by submitting malicious XML data to read...

CVE-2025-36011

MEDIUM CVSS 4.3 Sep 9, 2025

IBM Jazz for Service Management versions 1.1.3.0 through 1.1.3.24 fail to set the secure attribute on authorization tokens and session cookies, allowing attackers to intercept these cookies via HTTP l...

CVE-2024-52892

MEDIUM CVSS 6.1 Feb 6, 2025

IBM Jazz for Service Management versions 1.1.3 through 1.1.3.23 contain a cross-site scripting (XSS) vulnerability that allows unauthenticated attackers to inject malicious JavaScript into the web int...

CVE-2024-47106

MEDIUM CVSS 5.3 Jan 18, 2025

IBM Jazz for Service Management versions 1.1.3 through 1.1.3.22 have improper access restrictions that could allow remote attackers to obtain sensitive information. This information disclosure vulnera...