IBM Rational Collaborative Lifecycle Management 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Quality Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Team Concert 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational DOORS Next Generation 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Engineering Lifecycle Manager 4.x before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rational Rhapsody Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; and Rational Software Architect Design Manager 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5 allow remote authenticated users to obtain sensitive information via unspecified vectors.
                
            References
                    | Link | Resource | 
|---|---|
| http://www-01.ibm.com/support/docview.wss?uid=swg21991477 | Vendor Advisory | 
| http://www.securityfocus.com/bid/94518 | |
| http://www-01.ibm.com/support/docview.wss?uid=swg21991477 | Vendor Advisory | 
| http://www.securityfocus.com/bid/94518 | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
Configuration 3 (hide)
| 
 | 
Configuration 4 (hide)
| 
 | 
Configuration 5 (hide)
| 
 | 
Configuration 6 (hide)
| 
 | 
Configuration 7 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2016-11-25 03:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2947
Mitre link : CVE-2016-2947
CVE.ORG link : CVE-2016-2947
JSON object : View
Products Affected
                ibm
- rational_engineering_lifecycle_manager
- rational_collaborative_lifecycle_management
- rational_doors_next_generation
- rational_team_concert
- rational_rhapsody_design_manager
- rational_quality_manager
- rational_software_architect_design_manager
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
