Total vulnerabilities in the database
IBM Rational ClearQuest 8.0 through 8.0.1.9 and 9.0 through 9.0.1.3 (CQ OSLC linkages, EmailRelay) fails to check the SSL certificate against the requested hostname. It is subject to a man-in-the-middle attack with an impersonating server observing all the data transmitted to the real server. IBM X-Force ID: 113353.
Software | From | Fixed in |
---|---|---|
ibm / rational_clearquest | 9.0.1.0 | 9.0.1.3.x |
ibm / rational_clearquest | 9.0.0.0 | 9.0.0.6.x |
ibm / rational_clearquest | 8.0.0.0 | 8.0.0.21.x |
ibm / rational_clearquest | 8.0.1.0 | 8.0.1.17.x |