4
CVSSv2

CVE-2010-4602

Published: 29/12/2010 Updated: 17/08/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

The Web client in IBM Rational ClearQuest 7.1.1.x prior to 7.1.1.4 and 7.1.2.x prior to 7.1.2.1 allows remote authenticated users to bypass "restricted user" limitations, and read arbitrary records, via a modified record number in the URL for a RECORD action, as demonstrated by a modified bookmark.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm rational clearquest 7.1.1.3

ibm rational clearquest 7.1.1.2

ibm rational clearquest 7.1.1.1

ibm rational clearquest 7.1.2