CVE-2012-4839

The OSLC interface in the Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to conduct phishing attacks via a FRAME element.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 45%
VendorProductVersion
ibmrational_clearquest
7.1.2
ibmrational_clearquest
7.1.2.1
ibmrational_clearquest
7.1.2.2
ibmrational_clearquest
7.1.2.3
ibmrational_clearquest
7.1.2.4
ibmrational_clearquest
7.1.2.5
ibmrational_clearquest
7.1.2.6
ibmrational_clearquest
7.1.2.7
ibmrational_clearquest
7.1.2.8
ibmrational_clearquest
8.0.0
ibmrational_clearquest
8.0.0.1
ibmrational_clearquest
8.0.0.2
ibmrational_clearquest
8.0.0.3
ibmrational_clearquest
8.0.0.4
𝑥
= Vulnerable software versions