4.3
CVE-2016-0372
- EPSS 0.26%
- Veröffentlicht 24.11.2016 19:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@us.ibm.com
- Teams Watchlist Login
- Unerledigt Login
IBM Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Quality Manager 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Team Concert 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational DOORS Next Generation 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Engineering Lifecycle Manager 4.x before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Rhapsody Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; and Rational Software Architect Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5 do not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Rational Team Concert Version3.0.1.6
Ibm ≫ Rational Team Concert Version4.0.0
Ibm ≫ Rational Team Concert Version4.0.1
Ibm ≫ Rational Team Concert Version4.0.2
Ibm ≫ Rational Team Concert Version4.0.3
Ibm ≫ Rational Team Concert Version4.0.4
Ibm ≫ Rational Team Concert Version4.0.5
Ibm ≫ Rational Team Concert Version4.0.6
Ibm ≫ Rational Team Concert Version4.0.7
Ibm ≫ Rational Team Concert Version5.0.0
Ibm ≫ Rational Team Concert Version5.0.1
Ibm ≫ Rational Team Concert Version5.0.2
Ibm ≫ Rational Team Concert Version6.0.0
Ibm ≫ Rational Team Concert Version6.0.1
Ibm ≫ Rational Team Concert Version6.0.2
Ibm ≫ Rational Quality Manager Version3.0.1.6
Ibm ≫ Rational Quality Manager Version4.0.0
Ibm ≫ Rational Quality Manager Version4.0.1
Ibm ≫ Rational Quality Manager Version4.0.2
Ibm ≫ Rational Quality Manager Version4.0.3
Ibm ≫ Rational Quality Manager Version4.0.4
Ibm ≫ Rational Quality Manager Version4.0.5
Ibm ≫ Rational Quality Manager Version4.0.6
Ibm ≫ Rational Quality Manager Version4.0.7
Ibm ≫ Rational Quality Manager Version5.0.0
Ibm ≫ Rational Quality Manager Version5.0.1
Ibm ≫ Rational Quality Manager Version5.0.2
Ibm ≫ Rational Quality Manager Version6.0.0
Ibm ≫ Rational Quality Manager Version6.0.1
Ibm ≫ Rational Quality Manager Version6.0.2
Ibm ≫ Rational Software Architect Design Manager Version4.0.0
Ibm ≫ Rational Software Architect Design Manager Version4.0.1
Ibm ≫ Rational Software Architect Design Manager Version4.0.2
Ibm ≫ Rational Software Architect Design Manager Version4.0.3
Ibm ≫ Rational Software Architect Design Manager Version4.0.4
Ibm ≫ Rational Software Architect Design Manager Version4.0.5
Ibm ≫ Rational Software Architect Design Manager Version4.0.6
Ibm ≫ Rational Software Architect Design Manager Version4.0.7
Ibm ≫ Rational Software Architect Design Manager Version5.0.0
Ibm ≫ Rational Software Architect Design Manager Version5.0.1
Ibm ≫ Rational Software Architect Design Manager Version5.0.2
Ibm ≫ Rational Software Architect Design Manager Version6.0.0
Ibm ≫ Rational Software Architect Design Manager Version6.0.1
Ibm ≫ Rational Software Architect Design Manager Version6.0.2
Ibm ≫ Rational Collaborative Lifecycle Management Version3.0.1.6
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.0
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.1
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.2
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.3
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.4
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.5
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.6
Ibm ≫ Rational Collaborative Lifecycle Management Version4.0.7
Ibm ≫ Rational Collaborative Lifecycle Management Version5.0.0
Ibm ≫ Rational Collaborative Lifecycle Management Version5.0.1
Ibm ≫ Rational Collaborative Lifecycle Management Version5.0.2
Ibm ≫ Rational Collaborative Lifecycle Management Version6.0.0
Ibm ≫ Rational Collaborative Lifecycle Management Version6.0.1
Ibm ≫ Rational Collaborative Lifecycle Management Version6.0.2
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.0
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.1
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.2
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.3
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.4
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.5
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.6
Ibm ≫ Rational Engineering Lifecycle Manager Version4.0.7
Ibm ≫ Rational Engineering Lifecycle Manager Version5.0.0
Ibm ≫ Rational Engineering Lifecycle Manager Version5.0.1
Ibm ≫ Rational Engineering Lifecycle Manager Version5.0.2
Ibm ≫ Rational Engineering Lifecycle Manager Version6.0.0
Ibm ≫ Rational Engineering Lifecycle Manager Version6.0.1
Ibm ≫ Rational Engineering Lifecycle Manager Version6.0.2
Ibm ≫ Rational Rhapsody Design Manager Version4.0
Ibm ≫ Rational Rhapsody Design Manager Version4.0.1
Ibm ≫ Rational Rhapsody Design Manager Version4.0.2
Ibm ≫ Rational Rhapsody Design Manager Version4.0.3
Ibm ≫ Rational Rhapsody Design Manager Version4.0.4
Ibm ≫ Rational Rhapsody Design Manager Version4.0.5
Ibm ≫ Rational Rhapsody Design Manager Version4.0.6
Ibm ≫ Rational Rhapsody Design Manager Version4.0.7
Ibm ≫ Rational Rhapsody Design Manager Version5.0.0
Ibm ≫ Rational Rhapsody Design Manager Version5.0.1
Ibm ≫ Rational Rhapsody Design Manager Version5.0.2
Ibm ≫ Rational Rhapsody Design Manager Version6.0.0
Ibm ≫ Rational Rhapsody Design Manager Version6.0.1
Ibm ≫ Rational Rhapsody Design Manager Version6.0.2
Ibm ≫ Rational Doors Next Generation Version4.0.0
Ibm ≫ Rational Doors Next Generation Version4.0.1
Ibm ≫ Rational Doors Next Generation Version4.0.2
Ibm ≫ Rational Doors Next Generation Version4.0.3
Ibm ≫ Rational Doors Next Generation Version4.0.4
Ibm ≫ Rational Doors Next Generation Version4.0.5
Ibm ≫ Rational Doors Next Generation Version4.0.6
Ibm ≫ Rational Doors Next Generation Version4.0.7
Ibm ≫ Rational Doors Next Generation Version5.0.0
Ibm ≫ Rational Doors Next Generation Version5.0.1
Ibm ≫ Rational Doors Next Generation Version5.0.2
Ibm ≫ Rational Doors Next Generation Version6.0.0
Ibm ≫ Rational Doors Next Generation Version6.0.1
Ibm ≫ Rational Doors Next Generation Version6.0.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.26% | 0.468 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 3.7 | 2.2 | 1.4 |
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.