IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not properly implement the Local Access Only protection mechanism, which allows remote attackers to bypass authentication and read files via the Help Server Administration feature.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2014-09-23T21:00:00

Updated: 2024-08-06T10:35:56.954Z

Reserved: 2014-04-29T00:00:00

Link: CVE-2014-3106

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-09-23T21:55:04.943

Modified: 2017-08-29T01:34:39.797

Link: CVE-2014-3106

cve-icon Redhat

No data.