PT-2024-23198 · Hcl · Hcl Sametime

Published

2024-10-23

·

Updated

2026-01-08

·

CVE-2024-30124

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions HCL Sametime (affected versions not specified)
Description The issue concerns insecure services in-use on the UIM client by default. Specifically, an unused legacy REST service was enabled by default using the HTTP protocol. This could potentially be exploited by an attacker using the service endpoint maliciously.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2024-30124

Affected Products

Hcl Sametime