cbcvebase.
CVE-2009-1292
published 2009-04-14

CVE-2009-1292: UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and AIX places a username and password on…

PriorityP46low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.37%
29.2th percentile
UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and AIX places a username and password on the command line, which allows local users to obtain credentials by listing the process.

Affected

10 ranges
VendorProductVersion rangeFixed in
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
ibmrational_clearcase
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.