CVE-2012-4839

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/12/2012
Last modified:
11/04/2025

Description

The OSLC interface in the Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to conduct phishing attacks via a FRAME element.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:rational_clearquest:7.1.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:7.1.2.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:rational_clearquest:8.0.0.4:*:*:*:*:*:*:*