IBM Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Quality Manager 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Team Concert 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational DOORS Next Generation 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Engineering Lifecycle Manager 4.x before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Rhapsody Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; and Rational Software Architect Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5 allow remote authenticated users to execute arbitrary OS commands via a crafted request.
2016-11-24T19:59:06.957
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 6.3 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | rational_team_concert | 3.0.1.6 | Yes |
Application | ibm | rational_team_concert | 4.0.0 | Yes |
Application | ibm | rational_team_concert | 4.0.1 | Yes |
Application | ibm | rational_team_concert | 4.0.2 | Yes |
Application | ibm | rational_team_concert | 4.0.3 | Yes |
Application | ibm | rational_team_concert | 4.0.4 | Yes |
Application | ibm | rational_team_concert | 4.0.5 | Yes |
Application | ibm | rational_team_concert | 4.0.6 | Yes |
Application | ibm | rational_team_concert | 4.0.7 | Yes |
Application | ibm | rational_team_concert | 5.0.0 | Yes |
Application | ibm | rational_team_concert | 5.0.1 | Yes |
Application | ibm | rational_team_concert | 5.0.2 | Yes |
Application | ibm | rational_team_concert | 6.0.0 | Yes |
Application | ibm | rational_team_concert | 6.0.1 | Yes |
Application | ibm | rational_team_concert | 6.0.2 | Yes |