CVE-2017-1725: Infoleak
IBM Jazz Team Server affecting the following IBM Rational Products: Collaborative Lifecycle Management (CLM), Rational DOORS Next Generation (RDNG), Rational Engineering Lifecycle Manager (RELM), Rational Team Concert (RTC), Rational Quality Manager (RQM), Rational Rhapsody Design Manager (Rhapsody DM), and Rational Software Architect (RSA DM) contain an undisclosed vulnerability with the potential for information disclosure. IBM X-Force ID: 134820.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1725?
The severity of CVE-2017-1725 is medium with a CVSS score of 4.3.
Which IBM Rational products are affected by CVE-2017-1725?
IBM Jazz Team Server affects the following IBM Rational products: Collaborative Lifecycle Management (CLM), Rational DOORS Next Generation (RDNG), Rational Engineering Lifecycle Manager (RELM), Rational Team Concert (RTC), Rational Quality Manager (RQM), Rational Rhapsody Design Manager (Rhapsody), and Rational Software Architect Design Manager.
How can I mitigate the vulnerability in IBM Rational Collaborative Lifecycle Management (CLM)?
To mitigate the vulnerability in IBM Rational Collaborative Lifecycle Management (CLM), upgrade to a version between 5.0 to 6.0.5.
What should I do to fix the vulnerability in IBM Rational DOORS Next Generation?
To fix the vulnerability in IBM Rational DOORS Next Generation, upgrade to a version between 5.0 to 6.0.5.
Is IBM Rational Team Concert affected by CVE-2017-1725?
Yes, IBM Rational Team Concert is affected by CVE-2017-1725. It is recommended to upgrade to a version between 5.0 to 6.0.5 to mitigate the vulnerability.