CVE-2014-3079
The Administration and Reporting Tool in IBM Rational License Key Server (RLKS) 8.1.4.x before 8.1.4.4 allows remote authenticated users to bypass authorization checks and visit unspecified URLs with license-usage data via a DESCRIBE clause in a SPARQL query.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0037 (0.4%)
Percentile: 59.0%
EPSS: 2026-05-06
Affects
ibm:rational_license_key_serverTechnical description
The Administration and Reporting Tool in IBM Rational License Key Server (RLKS) 8.1.4.x before 8.1.4.4 allows remote authenticated users to bypass authorization checks and visit unspecified URLs with license-usage data via a DESCRIBE clause in a SPARQL query.
Published: 9/10/2014, 10:55:07 AM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://secunia.com/advisories/60709
- http://secunia.com/advisories/61071
- http://www-01.ibm.com/support/docview.wss?uid=swg21681449
- http://www-01.ibm.com/support/docview.wss?uid=swg21682627
- http://www-01.ibm.com/support/docview.wss?uid=swg24038045
- http://www.securityfocus.com/bid/69643
- https://exchange.xforce.ibmcloud.com/vulnerabilities/93912
- http://secunia.com/advisories/60709