Описание
IBM Rational ClearQuest 7.1.x before 7.1.2.7 and 8.x before 8.0.0.3, when ClearQuest Authentication is enabled, allows remote authenticated users to read password hashes via a user query.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:rational_clearquest:7.1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.6:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:a:ibm:rational_clearquest:8.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.2:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.00151
Низкий
3.5 Low
CVSS2
Дефекты
CWE-200
Связанные уязвимости
github
больше 3 лет назад
IBM Rational ClearQuest 7.1.x before 7.1.2.7 and 8.x before 8.0.0.3, when ClearQuest Authentication is enabled, allows remote authenticated users to read password hashes via a user query.
EPSS
Процентиль: 36%
0.00151
Низкий
3.5 Low
CVSS2
Дефекты
CWE-200