4.3
CVSSv2

CVE-2012-4839

Published: 20/12/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The OSLC interface in the Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x prior to 7.1.2.9 and 8.0.0.x prior to 8.0.0.5 allows remote malicious users to conduct phishing attacks via a FRAME element.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm rational clearquest 7.1.2.1

ibm rational clearquest 7.1.2.6

ibm rational clearquest 7.1.2.2

ibm rational clearquest 7.1.2

ibm rational clearquest 7.1.2.4

ibm rational clearquest 7.1.2.3

ibm rational clearquest 7.1.2.8

ibm rational clearquest 7.1.2.7

ibm rational clearquest 7.1.2.5

ibm rational clearquest 8.0.0.2

ibm rational clearquest 8.0.0.3

ibm rational clearquest 8.0.0.1

ibm rational clearquest 8.0.0

ibm rational clearquest 8.0.0.4