PT-2015-3815 · Ibm · Ibm Rational Team Concert+5
Publicado
2015-03-18
·
Atualizado
2015-03-18
·
CVE-2014-6129
CVSS v2.0
5.5
Média
| Vetor | AV:N/AC:L/Au:S/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM Rational Jazz Team Server (JTS) versions 3.x through 4.0.7 before iFix4
IBM Rational Jazz Team Server (JTS) versions 5.x before 5.0.2 iFix2
Rational Collaborative Lifecycle Management versions 3.x through 4.0.7 before iFix4
Rational Collaborative Lifecycle Management versions 5.x before 5.0.2 iFix2
Rational Quality Manager versions 2.x through 3.0.1.6 before iFix5
Rational Quality Manager versions 4.x before 4.0.7 iFix4
Rational Quality Manager versions 5.x before 5.0.2 iFix2
Rational Team Concert versions 2.x through 3.0.1.6 before iFix5
Rational Team Concert versions 4.x before 4.0.7 iFix4
Rational Team Concert versions 5.x before 5.0.2 iFix2
Rational DOORS Next Generation versions 4.x before 4.0.7 iFix4
Rational DOORS Next Generation versions 5.x before 5.0.2 iFix2
Rational Requirements Composer versions 2.x through 3.0.1.6 before iFix5
Description
The issue allows remote authenticated users to delete the dashboards of arbitrary users.
Recommendations
For IBM Rational Jazz Team Server (JTS) versions 3.x through 4.0.7 before iFix4, update to version 4.0.7 iFix4 or later.
For IBM Rational Jazz Team Server (JTS) versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later.
For Rational Collaborative Lifecycle Management versions 3.x through 4.0.7 before iFix4, update to version 4.0.7 iFix4 or later.
For Rational Collaborative Lifecycle Management versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later.
For Rational Quality Manager versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later.
For Rational Quality Manager versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later.
For Rational Quality Manager versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later.
For Rational Team Concert versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later.
For Rational Team Concert versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later.
For Rational Team Concert versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later.
For Rational DOORS Next Generation versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later.
For Rational DOORS Next Generation versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later.
For Rational Requirements Composer versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Rational Jazz Team Server
Ibm Rational Collaborative Lifecycle Management
Ibm Rational Doors Next Generation
Ibm Rational Quality Manager
Ibm Rational Requirements Composer
Ibm Rational Team Concert