CVE-2013-0598: CSRF
Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 before 8.0.0.8, and 8.0.1 before 8.0.1.1 allows remote attackers to hijack the authentication of arbitrary users.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0598?
CVE-2013-0598 is classified as a medium severity vulnerability regarding cross-site request forgery in IBM Rational ClearQuest.
How do I fix CVE-2013-0598?
To fix CVE-2013-0598, update IBM Rational ClearQuest to version 7.1.2.12 or later for version 7.1 or to version 8.0.0.8 or later for version 8.0.
Which versions of IBM Rational ClearQuest are affected by CVE-2013-0598?
CVE-2013-0598 affects IBM Rational ClearQuest versions 7.1 before 7.1.2.12 and 8.0 before 8.0.0.8.
What type of attack does CVE-2013-0598 involve?
CVE-2013-0598 involves a cross-site request forgery (CSRF) attack, allowing remote attackers to hijack user authentication.
Can CVE-2013-0598 allow unauthorized actions in IBM Rational ClearQuest?
Yes, CVE-2013-0598 can allow unauthorized actions by exploiting CSRF vulnerabilities to impersonate users.