CVE-2017-1191IBM Rational Collaborative Lifecycle Management vulnerability

4 documents4 sources
Severity
4.3MEDIUMNVD
EPSS
0.1%
top 67.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 27
Latest updateMay 13

Description

An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 4.0, 5.0, and 6.0) with potential for failure to restrict URL Access. IBM X-Force ID: 123661.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages8 packages

🔴Vulnerability Details

2
GHSA
GHSA-3p62-jm9h-gf52: An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 42022-05-13
CVEList
CVE-2017-1191: An undisclosed vulnerability in CLM applications (including IBM Rational Collaborative Lifecycle Management 42017-12-27

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows - 'win32k!NtGdiMakeFontDir' Kernel Stack Memory Disclosure2017-06-22
CVE-2017-1191 — IBM vulnerability | cvebase