IBM Rational ClearQuest 8.0 through 8.0.1.9 and 9.0 through 9.0.1.3 (CQ OSLC linkages, EmailRelay) fails to check the SSL certificate against the requested hostname. It is subject to a man-in-the-middle attack with an impersonating server observing all the data transmitted to the real server. IBM X-Force ID: 113353.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2018-08-13T16:00:00Z

Updated: 2024-09-16T23:10:24.966Z

Reserved: 2016-03-09T00:00:00

Link: CVE-2016-2922

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-08-13T16:29:00.230

Modified: 2019-10-09T23:17:52.750

Link: CVE-2016-2922

cve-icon Redhat

No data.