IBM Rational ClearQuest Multiple Security Vulnerabilities
BID:55125
Info
IBM Rational ClearQuest Multiple Security Vulnerabilities
| Bugtraq ID: | 55125 |
| Class: | Unknown |
| CVE: |
CVE-2012-2169 CVE-2012-2164 CVE-2012-2165 CVE-2012-2168 CVE-2012-0744 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 27 2012 12:00AM |
| Updated: | Jul 27 2012 12:00AM |
| Credit: | The vendor reported these issues. |
| Vulnerable: |
IBM Rational ClearQuest 8.0 IBM Rational ClearQuest 7.1.2.5 IBM Rational ClearQuest 7.1.0.1 IBM IBM Rational ClearQuest 8.0.0.2 IBM IBM Rational ClearQuest 8.0.0.1 IBM IBM Rational ClearQuest 7.1.2.6 IBM IBM Rational Business Developer 8.0.1 |
| Not Vulnerable: |
IBM Rational ClearQuest 8.0.1 IBM Rational ClearQuest 8.0.0.3 |
Discussion
IBM Rational ClearQuest Multiple Security Vulnerabilities
IBM Rational ClearQuest is prone to the following security vulnerabilities:
1. An HTML-injection vulnerability.
2. Multiple information-disclosure vulnerabilities.
3. A security-bypass vulnerability.
Attackers may leverage these issues to obtain potentially sensitive session information, bypass certain security restrictions, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, or control how the site is rendered to the user; other attacks are also possible.
The following versions are affected:
IBM Rational ClearQuest 7.1.x through versions 7.1.2.7
IBM Rational ClearQuest 8.x through versions 8.0.0.3
IBM Rational ClearQuest is prone to the following security vulnerabilities:
1. An HTML-injection vulnerability.
2. Multiple information-disclosure vulnerabilities.
3. A security-bypass vulnerability.
Attackers may leverage these issues to obtain potentially sensitive session information, bypass certain security restrictions, execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, or control how the site is rendered to the user; other attacks are also possible.
The following versions are affected:
IBM Rational ClearQuest 7.1.x through versions 7.1.2.7
IBM Rational ClearQuest 8.x through versions 8.0.0.3
Exploit / POC
IBM Rational ClearQuest Multiple Security Vulnerabilities
Attackers can exploit these issues with a browser.
The following example URIs are available:
https://www.example.com/snoop
https://www.example.com/hello
https://www.example.com/ivt/
https://www.example.com/hitcount
https://www.example.com/HitCount.jsp
https://www.example.com/HelloHTMLError.jsp
https://www.example.com/HelloHTML.jsp
https://www.example.com/HelloVXMLError.jsp
https://www.example.com/HelloVXML.jsp
https://www.example.com/HelloWMLError.jsp
https://www.example.com/HelloWML.jsp
https://www.example.com/cqweb/j_security_check
Attackers can exploit these issues with a browser.
The following example URIs are available:
https://www.example.com/snoop
https://www.example.com/hello
https://www.example.com/ivt/
https://www.example.com/hitcount
https://www.example.com/HitCount.jsp
https://www.example.com/HelloHTMLError.jsp
https://www.example.com/HelloHTML.jsp
https://www.example.com/HelloVXMLError.jsp
https://www.example.com/HelloVXML.jsp
https://www.example.com/HelloWMLError.jsp
https://www.example.com/HelloWML.jsp
https://www.example.com/cqweb/j_security_check
Solution / Fix
IBM Rational ClearQuest Multiple Security Vulnerabilities
Solution:
Vendor updates are available. Please see the references for more details.
Solution:
Vendor updates are available. Please see the references for more details.
References
IBM Rational ClearQuest Multiple Security Vulnerabilities
References:
References:
- CVE-2012-0744 (MITRE)
- CVE-2012-2164 (MITRE )
- CVE-2012-2165 (MITRE)
- CVE-2012-2168 (MITRE)
- CVE-2012-2169 (MITRE)
- Rational ClearQuest Homepage (IBM)