IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not properly implement the Local Access Only protection mechanism, which allows remote attackers to bypass authentication and read files via the Help Server Administration feature.
Advisories
Source ID Title
EUVD EUVD EUVD-2014-3127 IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not properly implement the Local Access Only protection mechanism, which allows remote attackers to bypass authentication and read files via the Help Server Administration feature.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-06T10:35:56.954Z

Reserved: 2014-04-29T00:00:00

Link: CVE-2014-3106

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-09-23T21:55:04.943

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-3106

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.