CVE Vulnerabilities

CVE-2015-0121

Published: May 30, 2015 | Modified: Dec 03, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.7 LOW
AV:L/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

IBM Rational Requirements Composer 3.0 through 3.0.1.6 and 4.0 through 4.0.7 and Rational DOORS Next Generation (RDNG) 4.0 through 4.0.7 and 5.0 through 5.0.2, when LTPA single sign on is used with WebSphere Application Server, do not terminate a Requirements Management (RM) session upon LTPA token expiration, which allows remote attackers to obtain access by leveraging an unattended workstation.

Affected Software

Name Vendor Start Version End Version
Rational_requirements_composer Ibm 3.0 (including) 3.0 (including)
Rational_requirements_composer Ibm 3.0.1 (including) 3.0.1 (including)
Rational_requirements_composer Ibm 3.0.1.1 (including) 3.0.1.1 (including)
Rational_requirements_composer Ibm 3.0.1.2 (including) 3.0.1.2 (including)
Rational_requirements_composer Ibm 3.0.1.3 (including) 3.0.1.3 (including)
Rational_requirements_composer Ibm 3.0.1.4 (including) 3.0.1.4 (including)
Rational_requirements_composer Ibm 3.0.1.5 (including) 3.0.1.5 (including)
Rational_requirements_composer Ibm 3.0.1.6 (including) 3.0.1.6 (including)
Rational_requirements_composer Ibm 4.0 (including) 4.0 (including)
Rational_requirements_composer Ibm 4.0.0 (including) 4.0.0 (including)
Rational_requirements_composer Ibm 4.0.0.1 (including) 4.0.0.1 (including)
Rational_requirements_composer Ibm 4.0.0.2 (including) 4.0.0.2 (including)
Rational_requirements_composer Ibm 4.0.1 (including) 4.0.1 (including)
Rational_requirements_composer Ibm 4.0.2 (including) 4.0.2 (including)
Rational_requirements_composer Ibm 4.0.3 (including) 4.0.3 (including)
Rational_requirements_composer Ibm 4.0.4 (including) 4.0.4 (including)
Rational_requirements_composer Ibm 4.0.5 (including) 4.0.5 (including)
Rational_requirements_composer Ibm 4.0.6 (including) 4.0.6 (including)
Rational_requirements_composer Ibm 4.0.7 (including) 4.0.7 (including)

References