PT-2014-5079 · Ibm · Ibm Sametime Meeting Server

Published

2014-07-01

·

Updated

2017-01-07

·

CVE-2014-3088

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Sametime Meeting Server version 8.5.1
Description The issue allows remote authenticated users to bypass intended upload restrictions. This is achieved by modifying the Content-Type header and file extension in wAttach?OpenForm multipart/form-data POST requests, which are not properly validated by the server. For example, an attacker could replace a text/plain .txt upload with an application/octet-stream .exe upload.
Recommendations For IBM Sametime Meeting Server version 8.5.1, consider validating file formats on the server-side to prevent bypassing of upload restrictions. As a temporary workaround, restrict access to the stconf.nsf file and the wAttach?OpenForm endpoint to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-3088

Affected Products

Ibm Sametime Meeting Server