HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
History

Thu, 31 Oct 2024 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech sametime
CPEs cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:sametime:12.0.2:-:*:*:*:*:*:*
Vendors & Products Hcltech
Hcltech sametime

Thu, 24 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 23 Oct 2024 22:30:00 +0000

Type Values Removed Values Added
Description HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
Title HCL Sametime is impacted by generation of error messages containing sensitive information
Weaknesses CWE-209
References
Metrics cvssV3_1

{'score': 3.6, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published: 2024-10-23T22:17:52.737Z

Updated: 2024-10-24T14:14:50.538Z

Reserved: 2023-12-07T03:59:48.772Z

Link: CVE-2023-50355

cve-icon Vulnrichment

Updated: 2024-10-24T14:14:47.157Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-23T23:15:12.170

Modified: 2024-10-31T15:18:27.160

Link: CVE-2023-50355

cve-icon Redhat

No data.