Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

IBM Rational ClearQuest CQWeb Server Cross Site Scripting and Information Disclosure Vulnerabilities

IBM Rational ClearQuest is prone to a cross-site scripting vulnerability and an information-disclosure vulnerability.

An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and obtain sensitive information.

Versions prior to IBM Rational ClearQuest 7.0.0.6 and 7.0.1.5 are affected.







 

Privacy Statement
Copyright 2008, SecurityFocus