CVE-2019-4603: Medium severity ibm rational quality manager vulnerability
IBM Quality Manager (RQM) 6.02, 6.06, and 6.0.6.1 could allow an authenticated user to create keywords through the REST API and have them appear as if they were created by another user. IBM X-Force ID: 168295.
Other sources
IBM Quality Manager (RQM) could allow an authenticated user to create keywords through the REST API and have them appear as if they were created by another user.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-4603?
CVE-2019-4603 is a vulnerability in IBM Quality Manager (RQM) that allows an authenticated user to create keywords through the REST API and have them appear as if they were created by another user.
What is the severity of CVE-2019-4603?
The severity of CVE-2019-4603 is medium with a CVSS score of 4.3.
Which versions of IBM Quality Manager are affected by CVE-2019-4603?
IBM Quality Manager (RQM) versions 6.0.2, 6.0.6, and 6.0.6.1 are affected by CVE-2019-4603.
How can an authenticated user exploit CVE-2019-4603?
An authenticated user can exploit CVE-2019-4603 by using the REST API to create keywords that appear to be created by another user.
Are there any references available for CVE-2019-4603?
Yes, you can find more information about CVE-2019-4603 at the following references: [IBM X-Force ID: 168295](https://exchange.xforce.ibmcloud.com/vulnerabilities/168295) and [IBM Support: Node 6172629](https://www.ibm.com/support/pages/node/6172629).