Skip to main content

PK77030: Security vulnerabilities reported for CQWeb server: 'Cross-Site Scripting' and 'Possible Username or Password Disclosure'.


Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Security vulnerabilities reported for CQWeb server: 'Cross-Site
    Scripting' and 'Possible Username or Password Disclosure'.
    

Local fix

Problem summary

  • Security vulnerabilities reported for CQWeb server:
    "Cross-Site Scripting" and "Possible Username or Password
    Disclosure".
    

Problem conclusion

  • A fix is available in ClearQuest 7.0.0.6 and 7.0.1.5.
    

Temporary fix

Comments

APAR Information

  • APAR number

    PK77030

  • Reported component name

    CLEARQUEST WIN

  • Reported component ID

    5724G3600

  • Reported release

    701

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2008-12-05

  • Closed date

    2009-06-23

  • Last modified date

    2009-06-23

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    CLEARQUEST WIN

  • Fixed component ID

    5724G3600

Applicable component levels

  • R701 PSN

       UP

Rate this page:

(0 users)Average rating

Copyright and trademark information

IBM, the IBM logo and ibm.com are trademarks of International Business Machines Corp., registered in many jurisdictions worldwide. Other product and service names might be trademarks of IBM or other companies. A current list of IBM trademarks is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.

Rate this page:


(0 users)Average rating

Add comments

Document information

Rational ClearQuest


Software version:
7.0.1


Reference #:
PK77030


Modified date:
2009-06-23

Translate my page

Content navigation