CVE-2014-3106: Medium severity ibm rational clearcase vulnerability
IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not properly implement the Local Access Only protection mechanism, which allows remote attackers to bypass authentication and read files via the Help Server Administration feature.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3106?
CVE-2014-3106 has a medium severity rating due to its potential to allow unauthorized remote access.
How do I fix CVE-2014-3106?
To fix CVE-2014-3106, update your IBM Rational ClearQuest to versions 7.1.2.15, 8.0.0.12, or 8.0.1.5 and above.
What can attackers do with CVE-2014-3106?
Attackers can bypass authentication and read files through the Help Server Administration feature if CVE-2014-3106 is exploited.
Which versions of IBM Rational ClearQuest are affected by CVE-2014-3106?
CVE-2014-3106 affects IBM Rational ClearQuest versions prior to 7.1.2.15, 8.0.0 prior to 8.0.0.12, and 8.0.1 prior to 8.0.1.5.
Is CVE-2014-3106 easy to exploit?
Yes, CVE-2014-3106 is relatively easy to exploit, making it crucial for organizations to apply the patch immediately.