PT-2008-6450 · Ibm · Ibm Rational Clearquest

Published

2008-12-05

·

Updated

2017-08-08

·

CVE-2008-5326

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM Rational ClearQuest versions 7.0.0 through 7.0.0.3 IBM Rational ClearQuest versions 7.0.1 through 7.0.1.2
Description The issue allows local users to obtain user and database passwords by using a password revealer utility on a field containing a series of asterisks. This is related to the ClearQuest Maintenance Tool in IBM Rational ClearQuest on Windows.
Recommendations For IBM Rational ClearQuest versions 7.0.0 through 7.0.0.3, update to version 7.0.0.4 or later. For IBM Rational ClearQuest versions 7.0.1 through 7.0.1.2, update to version 7.0.1.3 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-5326

Affected Products

Ibm Rational Clearquest