Описание
IBM Rational Quality Manager (RQM) and Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.x before 4.0.7 iFix11, 5.x before 5.0.2 iFix17, and 6.x before 6.0.1 ifix3 allow remote authenticated users to execute arbitrary OS commands via a crafted "HTML request."
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:4.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_collaborative_lifecycle_management:6.0.1:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:a:ibm:rational_quality_manager:3.0.1.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:4.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_quality_manager:6.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00894
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-77
Связанные уязвимости
CVSS3: 8.8
github
больше 3 лет назад
IBM Rational Quality Manager (RQM) and Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.x before 4.0.7 iFix11, 5.x before 5.0.2 iFix17, and 6.x before 6.0.1 ifix3 allow remote authenticated users to execute arbitrary OS commands via a crafted "HTML request."
EPSS
Процентиль: 75%
0.00894
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-77