CVE-2012-5765: Infoleak
The Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a SQL error message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5765?
CVE-2012-5765 has a medium severity rating due to its potential to expose sensitive information.
How do I fix CVE-2012-5765?
To mitigate CVE-2012-5765, upgrade IBM Rational ClearQuest to version 7.1.2.9 or later, or 8.0.0.5 or later.
What is the impact of CVE-2012-5765?
The impact of CVE-2012-5765 is that remote attackers may gain unauthorized access to sensitive information through SQL error messages.
Which IBM Rational ClearQuest versions are affected by CVE-2012-5765?
CVE-2012-5765 affects IBM Rational ClearQuest versions 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5.
Can CVE-2012-5765 be exploited remotely?
Yes, CVE-2012-5765 can be exploited by remote attackers through unspecified vectors that trigger SQL error messages.