Summary
A stored cross-site scripting (XSS) issues impact certain areas of the Web UI for Code Insight v7.x releases up to and including 2020 R1 (7.11.0-64).
Symptoms
**** Only the following information is permitted to be distributed to users of products enabled with Code Insight:
- CVE number (if available)
- CWE ID
- CVSS scores
- Any publicly available information
****
The cross-site scripting (XSS) issues were assigned a CVSS v3 score of 3.4; that is low severity.
Resolution
Code Insight 2020 R1 SP1 release (7.11.1-7) or later address the cross-site scripting issues with the Web UI. This version and greater is available for download on the Product and License Center. We advise Code Insight customers to update to the latest version.
Additional Information
For identifying this vulnerability and disclosing it to Revenera under a responsible disclosure process, we'd like to thank Goutham Madhwaraj.
Related Documents
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12082
Related Articles
CVE-2020-12083 Remediated in Code Insight 3Number of Views Custom Reports Framework in Code Insight 13Number of Views SAML Upgrade in Code Insight 2025 R4 7Number of Views Using Postman to Execute a Project Data Import in Code Insight 9Number of Views Remote Code Execution Vulnerability Remediated in lmadmin 15Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago