|
IBM Rational ClearQuest CQWeb Server Cross Site Scripting and Information Disclosure Vulnerabilities
IBM Rational ClearQuest is prone to a cross-site scripting vulnerability and an information-disclosure vulnerability. An attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, and obtain sensitive information. Versions prior to IBM Rational ClearQuest 7.0.0.6 and 7.0.1.5 are affected. |
|
|
Privacy Statement |