← Back

CVE-2017-1191

nvd nist
Published: Dec 27, 2017Modified: May 13, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 4.0, 5.0, and 6.0) with potential for failure to restrict URL Access. IBM X-Force ID: 123661.

Affected (22)

7 products
Rational Quality Manager
Rational Team Concert
Rational Doors Next Generation
Rational Rhapsody Design Manager
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 4.0.0 to 6.0.4
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 4.0.0 to 4.0.7
From 5.0.0 to 5.0.2
From 6.0.0 to 6.0.4
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 4.0.0 to 4.0.7
From 5.0.0 to 5.0.2
From 6.0.0 to 6.0.4
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 4.0.1 to 4.0.7
From 5.0.0 to 5.0.2
From 6.0.0 to 6.0.4
Configuration E
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 4.0.3 to 4.0.7
From 5.0.0 to 5.0.2
From 6.0.0 to 6.0.4
Configuration F
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 4.0.0 to 4.0.7
From 5.0.0 to 5.0.2
From 6.0.0 to 6.0.4
Configuration G
6 vulnerable

References (4)

Source: psirt@us.ibm.com
Issue TrackingVendor Advisory
Source: psirt@us.ibm.com
Issue TrackingVDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVDB EntryVendor Advisory

Timeline

No history available yet.