VendorsIBMrational_engineering_lifecycle_manager4.06
Vulnerabilities

IBM Rational Engineering Lifecycle Manager 4.06

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2014-3092
IBM Jazz Team Server, as used in Rational Collaborative Lifecycle Management; Rational Quality Manager 3.x before 3.0.1.6 iFix 3, 4.x before 4.0.7, and 5.x before 5.0.1; and other Rational products, does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.
Published 2014-09-12 · Modified
5.0EPSS 0.017