Vulnerability Description
The Jazz help system in IBM Rational Collaborative Lifecycle Management 4.0 through 5.0.2, Rational Quality Manager 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Team Concert 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Requirements Composer 4.0 through 4.0.7, Rational DOORS Next Generation 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Engineering Lifecycle Manager 4.0.3 through 4.0.7 and 5.0 through 5.0.2, Rational Rhapsody Design Manager 4.0 through 4.0.7 and 5.0 through 5.0.2, and Rational Software Architect Design Manager 4.0 through 4.0.7 and 5.0 through 5.0.2 allows remote attackers to read JSP source code via a crafted request.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Rational Software Architect Design Manager | 4.0.0 |
| Ibm | Rational Team Concert | 4.0 |
| Ibm | Rational Rhapsody Design Manager | 4.0 |
| Ibm | Rational Collaborative Lifecycle Management | 4.0.0 |
| Ibm | Rational Requirements Composer | 4.0.0 |
| Ibm | Rational Doors Next Generation | 4.0.0 |
| Ibm | Rational Engineering Lifecycle Manager | 4.0.3 |
| Ibm | Rational Quality Manager | 4.0 |
Related Weaknesses (CWE)
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21882770PatchVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21882770PatchVendor Advisory
FAQ
What is CVE-2015-0113?
CVE-2015-0113 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Jazz help system in IBM Rational Collaborative Lifecycle Management 4.0 through 5.0.2, Rational Quality Manager 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Team Concert 4.0 through 4.0.7 and...
How severe is CVE-2015-0113?
CVE-2015-0113 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-0113?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Rational Software Architect Design Manager, Ibm Rational Team Concert, Ibm Rational Rhapsody Design Manager, Ibm Rational Collaborative Lifecycle Management, Ibm Rational Requirements Composer.