IBM Quality Manager (RQM) 6.02, 6.06, and 6.0.6.1 could allow an authenticated user to create keywords through the REST API and have them appear as if they were created by another user. IBM X-Force ID: 168295.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/168295 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6172629 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-04-08 07:15
Updated : 2020-04-10 12:19
NVD link : CVE-2019-4603
Mitre link : CVE-2019-4603
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
ibm
- rational_quality_manager