CVE-2014-6129: IBM Rational Collaborative Lifecycle Management
Medium severity, CVSS 5.5. EPSS: 1.4% chance of exploitation in the next 30 days.
IBM Rational Jazz Team Server (JTS), as used in Rational Collaborative Lifecycle Management 3.x and 4.x before 4.0.7 iFix4 and 5.x before 5.0.2 iFix2; Rational Quality Manager 2.x and 3.x before 3.0.1.6 iFix5, 4.x before 4.0.7 iFix4, and 5.x before 5.0.2 iFix2; Rational Team Concert 2.x and 3.x before 3.0.1.6 iFix5, 4.x before 4.0.7 iFix4, and 5.x before 5.0.2 iFix2; Rational DOORS Next Generation 4.x before 4.0.7 iFix4 and 5.x before 5.0.2 iFix2; Rational Requirements Composer 2.x and 3.x before 3.0.1.6 iFix5; and other products, allows remote authenticated users to delete the dashboards of arbitrary users via unspecified vectors.
Affected products
- IBM Rational Collaborative Lifecycle Management: version 3.0.0 only; version 3.0.1 only; version 3.0.1.1 only; version 3.0.1.2 only; version 3.0.1.3 only; version 3.0.1.4 only; …
- IBM Rational Doors Next Generation: version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only; version 4.0.5 only; …
- IBM Rational Quality Manager: version 2.0 only; version 2.0.0.1 only; version 2.0.0.2 only; version 2.0.1 only; version 2.0.1.1 only; version 3.0 only; …
- IBM Rational Requirements Composer: version 2.0 only; version 2.0.0.1 only; version 2.0.0.2 only; version 2.0.0.3 only; version 2.0.0.4 only; version 3.0 only; …
- IBM Rational Team Concert: version 2.0.0.1 only; version 2.0.0.2 only; version 3.0 only; version 3.0.1 only; version 3.0.1.1 only; version 3.0.1.2 only; …
Published 2015-03-18. Last modified 2026-06-17.