CVE-2013-4062: IBM Rational Policy Tester
Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.
IBM Rational Policy Tester 8.5 before 8.5.0.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof Jazz Team servers, obtain sensitive information, and modify the client-server data stream via a crafted certificate.
Affected products
- IBM Rational Policy Tester: version 8.5.0.0 only; version 8.5.0.1 only; version 8.5.0.2 only; version 8.5.0.3 only; version 8.5.0.4 only
Published 2013-09-09. Last modified 2026-06-16.