PT-2015-3815 · Ibm · Ibm Rational Team Concert+5

Publicado

2015-03-18

·

Atualizado

2015-03-18

·

CVE-2014-6129

CVSS v2.0

5.5

Média

VetorAV:N/AC:L/Au:S/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM Rational Jazz Team Server (JTS) versions 3.x through 4.0.7 before iFix4 IBM Rational Jazz Team Server (JTS) versions 5.x before 5.0.2 iFix2 Rational Collaborative Lifecycle Management versions 3.x through 4.0.7 before iFix4 Rational Collaborative Lifecycle Management versions 5.x before 5.0.2 iFix2 Rational Quality Manager versions 2.x through 3.0.1.6 before iFix5 Rational Quality Manager versions 4.x before 4.0.7 iFix4 Rational Quality Manager versions 5.x before 5.0.2 iFix2 Rational Team Concert versions 2.x through 3.0.1.6 before iFix5 Rational Team Concert versions 4.x before 4.0.7 iFix4 Rational Team Concert versions 5.x before 5.0.2 iFix2 Rational DOORS Next Generation versions 4.x before 4.0.7 iFix4 Rational DOORS Next Generation versions 5.x before 5.0.2 iFix2 Rational Requirements Composer versions 2.x through 3.0.1.6 before iFix5
Description The issue allows remote authenticated users to delete the dashboards of arbitrary users.
Recommendations For IBM Rational Jazz Team Server (JTS) versions 3.x through 4.0.7 before iFix4, update to version 4.0.7 iFix4 or later. For IBM Rational Jazz Team Server (JTS) versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later. For Rational Collaborative Lifecycle Management versions 3.x through 4.0.7 before iFix4, update to version 4.0.7 iFix4 or later. For Rational Collaborative Lifecycle Management versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later. For Rational Quality Manager versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later. For Rational Quality Manager versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later. For Rational Quality Manager versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later. For Rational Team Concert versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later. For Rational Team Concert versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later. For Rational Team Concert versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later. For Rational DOORS Next Generation versions 4.x before 4.0.7 iFix4, update to version 4.0.7 iFix4 or later. For Rational DOORS Next Generation versions 5.x before 5.0.2 iFix2, update to version 5.0.2 iFix2 or later. For Rational Requirements Composer versions 2.x through 3.0.1.6 before iFix5, update to version 3.0.1.6 iFix5 or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-6129

Produtos afetados

Ibm Rational Jazz Team Server
Ibm Rational Collaborative Lifecycle Management
Ibm Rational Doors Next Generation
Ibm Rational Quality Manager
Ibm Rational Requirements Composer
Ibm Rational Team Concert