Vulnerabilities > IBM > Rational Clearquest > Critical

DATE CVE VULNERABILITY TITLE RISK
2012-04-22 CVE-2012-0708 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IBM Rational Clearquest
Heap-based buffer overflow in the Ole API in the CQOle ActiveX control in cqole.dll in IBM Rational ClearQuest 7.1.1 before 7.1.1.9, 7.1.2 before 7.1.2.6, and 8.0.0 before 8.0.0.2 allows remote attackers to execute arbitrary code via a crafted web page that leverages a RegisterSchemaRepoFromFileByDbSet function-prototype mismatch.
network
ibm CWE-119
critical
9.3
2010-12-29 CVE-2010-4601 Unspecified vulnerability in IBM Rational Clearquest
Multiple unspecified vulnerabilities in IBM Rational ClearQuest 7.0.x before 7.0.1.11, 7.1.1.x before 7.1.1.4, and 7.1.2.x before 7.1.2.1 allow attackers to have an unknown impact via vectors related to third-party .ocx files.
network
low complexity
ibm
critical
10.0