Vulnerabilities > IBM > Rational Clearcase > 7.0.0.1

DATE CVE VULNERABILITY TITLE RISK
2009-12-18 CVE-2009-4357 Information Exposure vulnerability in IBM Rational Clearcase and Rational Clearquest
CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors.
network
low complexity
ibm CWE-200
5.0
2009-04-14 CVE-2009-1292 Information Exposure vulnerability in IBM Rational Clearcase
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and AIX places a username and password on the command line, which allows local users to obtain credentials by listing the process.
local
low complexity
ibm unix CWE-200
2.1