Description
CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2009-4325 | CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-17T03:59:45.984Z
Reserved: 2009-12-18T00:00:00.000Z
Link: CVE-2009-4357
No data.
Status : Modified
Published: 2009-12-18T19:30:00.593
Modified: 2026-04-23T00:35:47.467
Link: CVE-2009-4357
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD