Lucene search

K
cveIbmCVE-2014-0845
HistoryMar 04, 2014 - 10:55 p.m.

CVE-2014-0845

2014-03-0422:55:03
CWE-20
ibm
web.nvd.nist.gov
21
cve-2014-0845
open redirect
vulnerability
ibm rational requirements composer
rational doors next generation
phishing
security advisory

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:P/A:N

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

40.3%

Open redirect vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Rational DOORS Next Generation 4.x before 4.0.6, allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.

Affected configurations

Nvd
Node
ibmrational_requirements_composerMatch3.0.1
OR
ibmrational_requirements_composerMatch3.0.1.1
OR
ibmrational_requirements_composerMatch3.0.1.2
OR
ibmrational_requirements_composerMatch3.0.1.3
OR
ibmrational_requirements_composerMatch3.0.1.4
OR
ibmrational_requirements_composerMatch3.0.1.5
OR
ibmrational_requirements_composerMatch3.0.1.6
OR
ibmrational_requirements_composerMatch4.0.0
OR
ibmrational_requirements_composerMatch4.0.0.1
OR
ibmrational_requirements_composerMatch4.0.0.2
OR
ibmrational_requirements_composerMatch4.0.1
OR
ibmrational_requirements_composerMatch4.0.2
OR
ibmrational_requirements_composerMatch4.0.3
OR
ibmrational_requirements_composerMatch4.0.4
OR
ibmrational_requirements_composerMatch4.0.5
Node
ibmrational_doors_next_generationMatch4.0.0
OR
ibmrational_doors_next_generationMatch4.0.1
OR
ibmrational_doors_next_generationMatch4.0.2
OR
ibmrational_doors_next_generationMatch4.0.3
OR
ibmrational_doors_next_generationMatch4.0.4
OR
ibmrational_doors_next_generationMatch4.0.5
VendorProductVersionCPE
ibmrational_requirements_composer3.0.1cpe:2.3:a:ibm:rational_requirements_composer:3.0.1:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.1cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.1:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.2cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.2:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.3cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.3:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.4cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.4:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.5cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.5:*:*:*:*:*:*:*
ibmrational_requirements_composer3.0.1.6cpe:2.3:a:ibm:rational_requirements_composer:3.0.1.6:*:*:*:*:*:*:*
ibmrational_requirements_composer4.0.0cpe:2.3:a:ibm:rational_requirements_composer:4.0.0:*:*:*:*:*:*:*
ibmrational_requirements_composer4.0.0.1cpe:2.3:a:ibm:rational_requirements_composer:4.0.0.1:*:*:*:*:*:*:*
ibmrational_requirements_composer4.0.0.2cpe:2.3:a:ibm:rational_requirements_composer:4.0.0.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 211

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:P/A:N

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

40.3%

Related for CVE-2014-0845