First published: Wed Dec 27 2017(Updated: )
An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 4.0, 5.0, and 6.0) with potential for failure to restrict URL Access. IBM X-Force ID: 123661.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Rational Collaborative Lifecycle Management | >=4.0.0<=6.0.4 | |
IBM Rational Quality Manager | >=4.0.0<=4.0.7 | |
IBM Rational Quality Manager | >=5.0.0<=5.0.2 | |
IBM Rational Quality Manager | >=6.0.0<=6.0.4 | |
IBM Rational Team Concert | >=4.0.0<=4.0.7 | |
IBM Rational Team Concert | >=5.0.0<=5.0.2 | |
IBM Rational Team Concert | >=6.0.0<=6.0.4 | |
IBM Rational DOORS Next Generation | >=4.0.1<=4.0.7 | |
IBM Rational DOORS Next Generation | >=5.0.0<=5.0.2 | |
IBM Rational DOORS Next Generation | >=6.0.0<=6.0.4 | |
IBM Rational Engineering Lifecycle Manager | >=4.0.3<=4.0.7 | |
IBM Rational Engineering Lifecycle Manager | >=5.0.0<=5.0.2 | |
IBM Rational Engineering Lifecycle Manager | >=6.0.0<=6.0.4 | |
IBM Rational Rhapsody Design Manager | >=4.0.0<=4.0.7 | |
IBM Rational Rhapsody Design Manager | >=5.0.0<=5.0.2 | |
IBM Rational Rhapsody Design Manager | >=6.0.0<=6.0.4 | |
IBM Rational Software Architect Design Manager | >=4.0.0<=4.0.7 | |
IBM Rational Software Architect Design Manager | =5.0.0 | |
IBM Rational Software Architect Design Manager | =5.0.1 | |
IBM Rational Software Architect Design Manager | =5.0.2 | |
IBM Rational Software Architect Design Manager | =6.0.0 | |
IBM Rational Software Architect Design Manager | =6.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-1191.
CLM applications, including IBM Rational Collaborative Lifecycle Management 4.0, 5.0, and 6.0, are affected.
The severity of CVE-2017-1191 is medium with a CVSS score of 4.3.
The vulnerability could result in failure to restrict URL Access.
You can find more information about this vulnerability at the following references: [IBM Support](http://www.ibm.com/support/docview.wss?uid=swg22011815), [IBM X-Force](https://exchange.xforce.ibmcloud.com/vulnerabilities/123661).