mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
362 lines
14 KiB
JSON
362 lines
14 KiB
JSON
{
|
|
"id": "CVE-2015-4996",
|
|
"sourceIdentifier": "psirt@us.ibm.com",
|
|
"published": "2016-01-02T05:59:02.817",
|
|
"lastModified": "2016-12-07T18:15:30.263",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "IBM Rational ClearQuest 7.1.x and 8.0.0.x before 8.0.0.17 and 8.0.1.x before 8.0.1.10 allows local users to spoof database servers and discover credentials via unspecified vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "IBM Rational ClearQuest 7.1.x y 8.0.0.x en versiones anteriores a 8.0.0.17 y 8.0.1.x en versiones anteriores a 8.0.1.10 permite a usuarios locales suplantar servidores de base de datos y descubrir credenciales a trav\u00e9s de vectores no especificados."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV30": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "3.0",
|
|
"vectorString": "CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
|
|
"attackVector": "LOCAL",
|
|
"attackComplexity": "HIGH",
|
|
"privilegesRequired": "NONE",
|
|
"userInteraction": "NONE",
|
|
"scope": "UNCHANGED",
|
|
"confidentialityImpact": "HIGH",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "NONE",
|
|
"baseScore": 5.1,
|
|
"baseSeverity": "MEDIUM"
|
|
},
|
|
"exploitabilityScore": 1.4,
|
|
"impactScore": 3.6
|
|
}
|
|
],
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:N",
|
|
"accessVector": "LOCAL",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "PARTIAL",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "NONE",
|
|
"baseScore": 3.6
|
|
},
|
|
"baseSeverity": "LOW",
|
|
"exploitabilityScore": 3.9,
|
|
"impactScore": 4.9,
|
|
"acInsufInfo": true,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-200"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FD7F255A-380A-4165-81E9-CC1BD76DFF1D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6A8D6A4C-A5B0-46A8-80ED-CAD3EC279149"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "457D44F0-BD01-488C-AEB1-8D82E726AECB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7C645C62-6794-421E-882C-ECA92B33C3D8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3AB4DB93-26A7-4B5E-ACF5-B8D95AC31566"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4F74EBAA-8A68-4F20-B14D-D1A77D57BC38"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "10A1A052-179D-411F-A214-EF2AF7E5F0F5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "230908F8-95CB-4273-BA32-0987145E5FDD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "57CB4AA1-354B-4EC4-8D70-F58654ABF9CB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E1766896-6D35-44CB-8512-AED3961CE224"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "64BC2E3D-4B20-46FF-B2B5-551BEB347FCC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "51B69987-F426-4D27-A721-067B978BEB78"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.1.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "18CD36A3-8D15-439A-97E7-67D7293EB875"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0201EFB5-9673-4C78-938A-C7BF769F5553"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2F1C1C0A-B403-44C5-B7BD-BC9466CB2848"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A0A7179A-2421-454C-8A58-EFB1BB7150BC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2FEA9B29-2A30-46D1-B778-CE7822CEA972"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "941C4C5A-DD11-436B-86D4-BC564E9C6B57"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4E538615-12E6-4CDF-8B32-A66CD35D98AE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F31399A6-5B53-46C1-B4CB-858360CFF133"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6E2E59A6-FC13-43FD-BDED-01EA0462F81B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9AFCF89A-FD9F-4460-8AE8-5FA9C607B1EE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6DCC5D8D-50E1-4DD1-B57F-2A692C8BBE48"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.10:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6A783CBC-1A1B-45CA-9FEE-C43FF1052C99"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.11:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CB5FDBE0-5661-4710-A7C0-15A28DDDF641"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:7.1.2.12:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "73013249-31FF-41E5-BEB9-23856068644D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1C0E641C-D2BA-4C9B-94E8-4A13926146E5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A51113A6-1744-47E6-8245-C0E33D39C789"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "33437FA1-E122-43BB-B347-AACD9C9295D6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "02D746F3-DCFD-427C-8157-8064A0452DB1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "33E40700-19C6-4CD7-9CE2-A3A7AC67B48A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AAB789E2-96FE-49E1-B0F9-F2F84D4F9F25"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C10D7B59-BD29-4CE8-B1D5-D2217A07FECF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0A2EF380-E216-4535-B0C8-FCE00E5F05CD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2A0DD7F6-3716-43FD-8C2F-EE14F7B54C69"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7B9162F1-625B-41DB-984A-536E9AD9DD01"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.10:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E501CB80-071F-49D8-A644-25A484814E82"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.11:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "82661974-6B4F-4A0E-9870-2DD9CB463D82"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.12:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D9299680-854F-4986-B308-94A0038D3D06"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.13:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D55365B6-7997-4D11-B21E-CF30659F0A47"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.14:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BED314FE-24CB-4C32-B174-EE9D77771256"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.15:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AF4E9664-66F6-43D5-8D23-0A0F872C52B7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.0.16:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B0FFE056-CF92-4FC9-A4D7-B1EAFEB36E67"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6021256F-894C-4366-B6A4-95FAF4CAED40"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9823C815-0526-4D11-A705-B00385608D94"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AB3C801C-C068-4E73-8B16-D65B52BFB3D5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EB872E39-0DFA-4AF8-8AE0-312F169FABE4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E7EB6365-1BB1-4269-8419-02D2177BEBC7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3AADF149-66EB-4E83-8C4F-8B9AFB60987A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "76250E06-A2EF-4ADC-B493-3F4D4022F576"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5672FE86-0EF2-4A3C-9189-D9E123CE8469"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:rational_clearquest:8.0.1.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C220127B-18F8-4727-A7DD-9014A5485BC2"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21972331",
|
|
"source": "psirt@us.ibm.com",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id/1034558",
|
|
"source": "psirt@us.ibm.com"
|
|
}
|
|
]
|
|
} |