CVE-2013-3036: IBM Rational Requirements Composer

Medium severity, CVSS 4.9. EPSS: 0.9% chance of exploitation in the next 30 days.

Open redirect vulnerability in IBM Rational Requirements Composer before 4.0.4 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.

Affected products

  • IBM Rational Requirements Composer: up to and including 4.0.3; version 4.0.0 only; version 4.0.1 only; version 4.0.2 only

Published 2013-09-12. Last modified 2026-06-16.