{ "id": "CVE-2015-4996", "sourceIdentifier": "psirt@us.ibm.com", "published": "2016-01-02T05:59:02.817", "lastModified": "2016-12-07T18:15:30.263", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "IBM Rational ClearQuest 7.1.x and 8.0.0.x before 8.0.0.17 and 8.0.1.x before 8.0.1.10 allows local users to spoof database servers and discover credentials via unspecified vectors." }, { "lang": "es", "value": "IBM Rational ClearQuest 7.1.x y 8.0.0.x en versiones anteriores a 8.0.0.17 y 8.0.1.x en versiones anteriores a 8.0.1.10 permite a usuarios locales suplantar servidores de base de datos y descubrir credenciales a trav\u00e9s de vectores no especificados." } ], "metrics": { "cvssMetricV30": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.0", "vectorString": "CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N", "attackVector": "LOCAL", "attackComplexity": "HIGH", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 5.1, "baseSeverity": "MEDIUM" }, "exploitabilityScore": 1.4, "impactScore": 3.6 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:N", "accessVector": "LOCAL", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "NONE", "baseScore": 3.6 }, "baseSeverity": "LOW", "exploitabilityScore": 3.9, "impactScore": 4.9, "acInsufInfo": true, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-200" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1:*:*:*:*:*:*:*", "matchCriteriaId": "FD7F255A-380A-4165-81E9-CC1BD76DFF1D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "6A8D6A4C-A5B0-46A8-80ED-CAD3EC279149" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "457D44F0-BD01-488C-AEB1-8D82E726AECB" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "7C645C62-6794-421E-882C-ECA92B33C3D8" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "3AB4DB93-26A7-4B5E-ACF5-B8D95AC31566" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "4F74EBAA-8A68-4F20-B14D-D1A77D57BC38" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "10A1A052-179D-411F-A214-EF2AF7E5F0F5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "230908F8-95CB-4273-BA32-0987145E5FDD" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "57CB4AA1-354B-4EC4-8D70-F58654ABF9CB" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.6:*:*:*:*:*:*:*", "matchCriteriaId": "E1766896-6D35-44CB-8512-AED3961CE224" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.7:*:*:*:*:*:*:*", "matchCriteriaId": "64BC2E3D-4B20-46FF-B2B5-551BEB347FCC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.8:*:*:*:*:*:*:*", "matchCriteriaId": "51B69987-F426-4D27-A721-067B978BEB78" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.9:*:*:*:*:*:*:*", "matchCriteriaId": "18CD36A3-8D15-439A-97E7-67D7293EB875" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "0201EFB5-9673-4C78-938A-C7BF769F5553" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "2F1C1C0A-B403-44C5-B7BD-BC9466CB2848" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "A0A7179A-2421-454C-8A58-EFB1BB7150BC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.3:*:*:*:*:*:*:*", "matchCriteriaId": "2FEA9B29-2A30-46D1-B778-CE7822CEA972" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.4:*:*:*:*:*:*:*", "matchCriteriaId": "941C4C5A-DD11-436B-86D4-BC564E9C6B57" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.5:*:*:*:*:*:*:*", "matchCriteriaId": "4E538615-12E6-4CDF-8B32-A66CD35D98AE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.6:*:*:*:*:*:*:*", "matchCriteriaId": "F31399A6-5B53-46C1-B4CB-858360CFF133" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.7:*:*:*:*:*:*:*", "matchCriteriaId": "6E2E59A6-FC13-43FD-BDED-01EA0462F81B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.8:*:*:*:*:*:*:*", "matchCriteriaId": "9AFCF89A-FD9F-4460-8AE8-5FA9C607B1EE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.9:*:*:*:*:*:*:*", "matchCriteriaId": "6DCC5D8D-50E1-4DD1-B57F-2A692C8BBE48" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.10:*:*:*:*:*:*:*", "matchCriteriaId": "6A783CBC-1A1B-45CA-9FEE-C43FF1052C99" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.11:*:*:*:*:*:*:*", "matchCriteriaId": "CB5FDBE0-5661-4710-A7C0-15A28DDDF641" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.12:*:*:*:*:*:*:*", "matchCriteriaId": "73013249-31FF-41E5-BEB9-23856068644D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "1C0E641C-D2BA-4C9B-94E8-4A13926146E5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "A51113A6-1744-47E6-8245-C0E33D39C789" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "33437FA1-E122-43BB-B347-AACD9C9295D6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "02D746F3-DCFD-427C-8157-8064A0452DB1" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "33E40700-19C6-4CD7-9CE2-A3A7AC67B48A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "AAB789E2-96FE-49E1-B0F9-F2F84D4F9F25" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.6:*:*:*:*:*:*:*", "matchCriteriaId": "C10D7B59-BD29-4CE8-B1D5-D2217A07FECF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.7:*:*:*:*:*:*:*", "matchCriteriaId": "0A2EF380-E216-4535-B0C8-FCE00E5F05CD" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.8:*:*:*:*:*:*:*", "matchCriteriaId": "2A0DD7F6-3716-43FD-8C2F-EE14F7B54C69" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.9:*:*:*:*:*:*:*", "matchCriteriaId": "7B9162F1-625B-41DB-984A-536E9AD9DD01" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.10:*:*:*:*:*:*:*", "matchCriteriaId": "E501CB80-071F-49D8-A644-25A484814E82" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.11:*:*:*:*:*:*:*", "matchCriteriaId": "82661974-6B4F-4A0E-9870-2DD9CB463D82" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.12:*:*:*:*:*:*:*", "matchCriteriaId": "D9299680-854F-4986-B308-94A0038D3D06" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.13:*:*:*:*:*:*:*", "matchCriteriaId": "D55365B6-7997-4D11-B21E-CF30659F0A47" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.14:*:*:*:*:*:*:*", "matchCriteriaId": "BED314FE-24CB-4C32-B174-EE9D77771256" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.15:*:*:*:*:*:*:*", "matchCriteriaId": "AF4E9664-66F6-43D5-8D23-0A0F872C52B7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.16:*:*:*:*:*:*:*", "matchCriteriaId": "B0FFE056-CF92-4FC9-A4D7-B1EAFEB36E67" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "6021256F-894C-4366-B6A4-95FAF4CAED40" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "9823C815-0526-4D11-A705-B00385608D94" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "AB3C801C-C068-4E73-8B16-D65B52BFB3D5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "EB872E39-0DFA-4AF8-8AE0-312F169FABE4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "E7EB6365-1BB1-4269-8419-02D2177BEBC7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "3AADF149-66EB-4E83-8C4F-8B9AFB60987A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.7:*:*:*:*:*:*:*", "matchCriteriaId": "76250E06-A2EF-4ADC-B493-3F4D4022F576" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.8:*:*:*:*:*:*:*", "matchCriteriaId": "5672FE86-0EF2-4A3C-9189-D9E123CE8469" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.9:*:*:*:*:*:*:*", "matchCriteriaId": "C220127B-18F8-4727-A7DD-9014A5485BC2" } ] } ] } ], "references": [ { "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21972331", "source": "psirt@us.ibm.com", "tags": [ "Vendor Advisory" ] }, { "url": "http://www.securitytracker.com/id/1034558", "source": "psirt@us.ibm.com" } ] }