First published: Fri Feb 15 2019(Updated: )
IBM Rational ClearCase 1.0.0.0 GIT connector does not sufficiently protect the document database password. An attacker could obtain the password and gain unauthorized access to the document database. IBM X-Force ID: 156583.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Rational ClearCase | >=9.0.1<9.0.1.5 | |
>=9.0.1<9.0.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-4059 is classified as high due to the potential for unauthorized access to sensitive data.
To fix CVE-2019-4059, ensure that the document database password is adequately protected and upgrade to the latest version of IBM Rational ClearCase.
CVE-2019-4059 affects IBM Rational ClearCase versions prior to 9.0.1.5.
CVE-2019-4059 is associated with unauthorized access attacks leveraging insufficient password protection.
If exploited, an attacker could obtain the document database password and access confidential information stored in the database.