4.6
CVSSv2

CVE-2008-5328

Published: 05/12/2008 Updated: 08/08/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:N/AC:H/Au:S/C:P/I:P/A:P

Vulnerability Summary

The ClearQuest Maintenance Tool in IBM Rational ClearQuest prior to 7 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote authenticated users to obtain sensitive information by locating the password object within the object tree during an import process.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm rational clearquest 7.0.1.2

ibm rational clearquest 7.0.0.2

ibm rational clearquest 7.0.1

ibm rational clearquest 7.0.0.0

ibm rational clearquest 7.0.0.1

ibm rational clearquest 7.0.1.1

ibm rational clearquest