4.4

CVE-2008-5326

The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7.0.0 before 7.0.0.4 and 7.0.1 before 7.0.1.3 on Windows allows local users to obtain (1) user and (2) database passwords by using a password revealer utility on a field containing a series of asterisks.

Data is provided by the National Vulnerability Database (NVD)
IbmRational Clearquest Version7.0.0.0
   MicrosoftWindows
IbmRational Clearquest Version7.0.0.1
   MicrosoftWindows
IbmRational Clearquest Version7.0.0.2
   MicrosoftWindows
IbmRational Clearquest Version7.0.0.3
   MicrosoftWindows
IbmRational Clearquest Version7.0.1
   MicrosoftWindows
IbmRational Clearquest Version7.0.1.1
   MicrosoftWindows
IbmRational Clearquest Version7.0.1.2
   MicrosoftWindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.171
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.4 3.4 6.4
AV:L/AC:M/Au:N/C:P/I:P/A:P