The Connect client in IBM Sametime 8.5.2 through 8.5.2.1 and 9.0 before HF1 does not properly restrict unsigned Java plugins, which allows remote attackers to obtain sensitive information via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2014-01-31T02:00:00
Updated: 2024-08-06T17:46:22.806Z
Reserved: 2013-11-08T00:00:00
Link: CVE-2013-6727
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-01-31T06:15:52.997
Modified: 2024-11-21T01:59:37.503
Link: CVE-2013-6727
Redhat
No data.