6.5
CVE-2008-5327
- EPSS 0.39%
- Veröffentlicht 05.12.2008 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7 before 7.1 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote authenticated users to obtain sensitive information by locating the password object within the object tree.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Rational Clearquest Version7.0
Ibm ≫ Rational Clearquest Version7.0.0.0
Ibm ≫ Rational Clearquest Version7.0.0.1
Ibm ≫ Rational Clearquest Version7.0.0.2
Ibm ≫ Rational Clearquest Version7.0.0.3
Ibm ≫ Rational Clearquest Version7.0.1
Ibm ≫ Rational Clearquest Version7.0.1.1
Ibm ≫ Rational Clearquest Version7.0.1.2
Ibm ≫ Rational Clearquest Version7.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.39% | 0.573 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|