PT-2013-2424 · Ibm · Ibm Sametime
Published
2013-04-28
·
Updated
2017-08-29
·
CVE-2013-0553
CVSS v2.0
3.5
Low
| Vector | AV:N/AC:M/Au:S/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Sametime versions 8.5.1 through 8.5.2.1
Description
The issue allows remote authenticated users to send commands to individual chat users or to all participants in a chat room via a crafted Sametime Instant Message (IM).
Recommendations
For versions 8.5.1 through 8.5.2.1, consider restricting access to chat rooms and implementing additional authentication measures to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Sametime