Information Disclosure Vulnerability in IBM Rational ClearQuest Products
CVE-2012-2168
Currently unrated
What is CVE-2012-2168?
IBM Rational ClearQuest versions 7.1.x prior to 7.1.2.7 and 8.x prior to 8.0.0.3 have a vulnerability that permits remote authenticated users to extract sensitive stack-trace information. This occurs through error messages generated by the CM server in response to invalid parameters, potentially exposing valuable internal details that could be exploited by malicious entities.