First published: Thu Jun 25 2009(Updated: )
Cross-site scripting (XSS) vulnerability in the CQWeb server in IBM Rational ClearQuest 7.0.0 before 7.0.0.6 and 7.0.1 before 7.0.1.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Rational ClearQuest | =7.0.1.3 | |
IBM Rational ClearQuest | =7.0.1.1 | |
IBM Rational ClearQuest | =7.0.0.1 | |
IBM Rational ClearQuest | =7.0.0.2 | |
IBM Rational ClearQuest | =7.0.1.0 | |
IBM Rational ClearQuest | =7.0 | |
IBM Rational ClearQuest | =7.0.0.0 | |
IBM Rational ClearQuest | =7.0.0.3 | |
IBM Rational ClearQuest | =7.0.0.5 | |
IBM Rational ClearQuest | =7.0.1 | |
IBM Rational ClearQuest | =7.0.0.4 | |
IBM Rational ClearQuest | =7.0.1.2 | |
IBM Rational ClearQuest | =7.0.2 | |
IBM Rational ClearQuest | =7.0.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2211 has a medium severity rating due to its potential for cross-site scripting attacks.
To fix CVE-2009-2211, update your IBM Rational ClearQuest to version 7.0.0.6 or later for the 7.0.0 series and 7.0.1.5 or later for the 7.0.1 series.
CVE-2009-2211 affects IBM Rational ClearQuest versions 7.0.0.0 to 7.0.0.5 and 7.0.1.0 to 7.0.1.4.
CVE-2009-2211 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web script or HTML.
Yes, CVE-2009-2211 can be exploited remotely by attackers to execute harmful scripts on unsuspecting users.