VYPR

Rational Collaborative Lifecycle Management

by IBM

CVEs (175)

  • CVE-2018-1423MedJul 10, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation products could disclose sensitive information to an authenticated attacker that could be used in further attacks against the system. IBM X-Force ID: 139026.

  • CVE-2017-1509MedJul 6, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation products could allow an authenticated user to obtain sensitive information from a stack trace that could be used to aid future attacks. IBM X-Force ID: 129719.

  • CVE-2017-1239MedJul 6, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 could reveal sensitive information in HTTP 500 Internal Server Error responses. IBM X-Force ID: 124357.

  • CVE-2017-1734MedApr 24, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Team Server affecting the following IBM Rational Products: Collaborative Lifecycle Management (CLM), Rational DOORS Next Generation (RDNG), Rational Engineering Lifecycle Manager (RELM), Rational Team Concert (RTC), Rational Quality Manager (RQM), Rational Rhapsody…

  • CVE-2017-1725MedApr 24, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Team Server affecting the following IBM Rational Products: Collaborative Lifecycle Management (CLM), Rational DOORS Next Generation (RDNG), Rational Engineering Lifecycle Manager (RELM), Rational Team Concert (RTC), Rational Quality Manager (RQM), Rational Rhapsody…

  • CVE-2017-1602MedMar 23, 2018
    risk 0.28cvss 4.3epss 0.01

    IBM RSA DM (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) could allow an authenticated user to access settings that they should not be able to using a specially crafted URL. IBM X-Force ID: 132625.

  • CVE-2017-1524MedMar 23, 2018
    risk 0.28cvss 4.3epss 0.02

    IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 and 6.0) could allow an authenticated user to obtain sensitive information from a specially crafted HTTP request that could be used to aid future attacks. IBM X-Force ID: 129970.

  • CVE-2017-1191MedDec 27, 2017
    risk 0.28cvss 4.3epss 0.01

    An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 4.0, 5.0, and 6.0) with potential for failure to restrict URL Access. IBM X-Force ID: 123661.

  • CVE-2017-1507MedDec 11, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation Products could disclose sensitive information during a scan that could lead to further attacks against the system. IBM X-Force ID: 129619.

  • CVE-2017-1570MedNov 27, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation products could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 131852.

  • CVE-2017-1251MedNov 27, 2017
    risk 0.28cvss 4.3epss 0.01

    An undisclosed vulnerability in CLM applications may result in some administrative deployment parameters being shown to an attacker. IBM X-Force ID: 124631.

  • CVE-2017-1240MedNov 27, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Rhapsody DM products could reveal sensitive information in HTTP 500 Internal Server Error responses. IBM X-Force ID: 124359.

  • CVE-2016-6024MedNov 27, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz technology based products might divulge information that might be useful in helping attackers through error messages. IBM X-Force ID: 116868.

  • CVE-2017-1295MedOct 25, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM RSA DM contains unspecified vulnerability in CLM Applications with potential for information leakage. IBM X-Force ID: 125157.

  • CVE-2017-1241MedOct 25, 2017
    risk 0.28cvss 4.3epss 0.01

    An unspecified vulnerability in IBM Jazz Foundation based applications might allow the display of stack trace information to an attacker. IBM X-Force ID: 124523.

  • CVE-2016-9700MedJul 5, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation could allow an authenticated attacker to obtain sensitive information from error message stack traces. IBM X-Force ID: 119528.

  • CVE-2017-1099MedJun 13, 2017
    risk 0.28cvss 4.3epss 0.03

    IBM Jazz Foundation could expose potentially sensitive information to authenticated users through stack trace error conditions. IBM X-Force ID: 120659.

  • CVE-2016-9735MedMay 15, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 119781,

  • CVE-2016-2866MedFeb 8, 2017
    risk 0.28cvss 4.3epss 0.01

    An unspecified vulnerability in IBM Jazz Team Server may disclose some deployment information to an authenticated user.

  • CVE-2016-6028MedFeb 1, 2017
    risk 0.28cvss 4.3epss 0.01

    IBM Jazz technology based products might allow an attacker to view work item titles that they do not have privilege to view.

Page 8 of 9