CVE-2017-1734
Summary
| CVE | CVE-2017-1734 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-04-24 14:29:00 UTC |
| Updated | 2018-06-05 18:06:00 UTC |
| Description | IBM Jazz Team Server affecting the following IBM Rational Products: Collaborative Lifecycle Management (CLM), Rational DOORS Next Generation (RDNG), Rational Engineering Lifecycle Manager (RELM), Rational Team Concert (RTC), Rational Quality Manager (RQM), Rational Rhapsody Design Manager (Rhapsody DM), and Rational Software Architect (RSA DM) stores potentially sensitive information in a cache that could be read by authenticated users. IBM X-Force ID: 134915. |
Risk And Classification
Problem Types: CWE-200
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Rational Collaborative Lifecycle Management | All | All | All | All |
| Application | Ibm | Rational Doors Next Generation | All | All | All | All |
| Application | Ibm | Rational Doors Next Generation | All | All | All | All |
| Application | Ibm | Rational Engineering Lifecycle Manager | All | All | All | All |
| Application | Ibm | Rational Engineering Lifecycle Manager | All | All | All | All |
| Application | Ibm | Rational Quality Manager | All | All | All | All |
| Application | Ibm | Rational Quality Manager | All | All | All | All |
| Application | Ibm | Rational Rhapsody Design Manager | All | All | All | All |
| Application | Ibm | Rational Rhapsody Design Manager | All | All | All | All |
| Application | Ibm | Rational Software Architect Design Manager | All | All | All | All |
| Application | Ibm | Rational Software Architect Design Manager | All | All | All | All |
| Application | Ibm | Rational Team Concert | All | All | All | All |
| Application | Ibm | Rational Team Concert | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | VDB Entry, Vendor Advisory |
| Security Bulletin: Multiple vulnerabilities in IBM Jazz Team Server affect IBM Rational products based on IBM Jazz technology | CONFIRM | www.ibm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.