CVE-2014-3105
Published Sep 23, 2014
Last updated 7 years ago
Overview
- Description
- The OSLC integration feature in the Web component in IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 provides different error messages for failed login attempts depending on whether the username exists, which allows remote attackers to enumerate account names via a series of requests.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EDAC2996-1ACC-423C-BEA5-D86652A748D2" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6F83672-CA00-4172-9ED5-41136A997E36" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9B940818-39A1-4D85-A74E-4B409519A397" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F67F177E-8B10-4D96-A337-5E207D77CCF5" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "838C21C7-9FBE-4119-968D-8091A7002FAC" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB22A0A9-80FE-4009-8003-F6FAFD677EB0" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53CA02F1-8279-4061-8130-BB944CAA0386" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1AD4D68-A16D-4938-B791-C89693836DBB" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "99C3D535-5115-4D66-931E-4703EC37229F" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DEB5683-7E33-461B-8F6D-898C03BE942C" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BEB9D55D-C018-4E02-A765-533426954967" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E1900129-63E0-42B4-BAF5-C084443EF28D" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B244BBE6-426E-4051-BF29-3B7760A9FB6B" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0A8E7369-A3A1-42C8-A159-C09DD64A2AFF" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A6E721E-6B5D-4BE6-8021-4265263977ED" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E293BA0-7CDE-4B96-8E1B-32E1853DD795" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5DF00E5-277E-4C22-8F2A-723A67CBDEE9" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5695499B-9173-4583-8028-D1E7375A146D" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B81B30B-B3F3-4628-AC90-4FAD36FC6BA1" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52C89869-152C-405A-989A-4ECE8DB3466B" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E386E2E-4F4C-4AFF-9E5C-9D384A68A248" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "399B83C2-0739-478C-8253-F5BEAD961670" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8801EE5A-2C03-4F5A-92EF-1E89D4E5A028" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8DE0B42B-C4B3-407B-A91D-EE31D93D3976" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25327BEA-21DE-4FCD-847B-2E20199003A6" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C45DA6EF-0017-4A9A-A520-3E814A802561" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:7.1.2.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63FCE4E0-1596-463A-80B0-0D7A8CDD53F8" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "971B2B97-4B92-4CE6-A659-76E95BFFC37F" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "305EE299-029D-4AEC-B738-4DB7F841E774" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C585B19A-3A0E-4D49-92EA-147A0389D77C" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFE9D77A-6462-461C-B651-FE2A8B239E0D" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFAA6B9C-96ED-4C76-9AEE-2285D29F6DB1" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "571A1E6F-05EC-43CC-9B31-39FEE3C2D173" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0260695E-777E-4A33-BF4E-ABC51D3AA77C" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "85321EB9-969F-4A2F-9001-CD7B2988838B" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE71E5A6-D24E-4C54-8CFF-84DD4B88D9A7" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2D5B1D4E-C744-4953-92C4-FFBD42319037" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "443B795B-F32F-449A-BB35-8538239BD5E1" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15872130-8ABE-4D3F-9D06-37C90666F3CF" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6873B05A-D699-4337-AA66-5C414F8ED078" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6F069484-AD4A-47D8-87F9-1BDB9801EC7C" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A0CDDF5F-0CD8-4D7B-9BB4-80B8245EAE21" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68CE3BBC-7607-46C5-BF9A-871F55D437D3" }, { "criteria": "cpe:2.3:a:ibm:rational_clearcase:8.0.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C59C974-2F5F-4F40-AAD1-09957758FF01" } ], "operator": "OR" } ] } ]