PT-2024-23198 · Hcl · Hcl Sametime

CVE-2024-30124

·

Published

2024-10-23

·

Updated

2026-01-08

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions HCL Sametime (affected versions not specified)
Description The issue concerns insecure services in-use on the UIM client by default. Specifically, an unused legacy REST service was enabled by default using the HTTP protocol. This could potentially be exploited by an attacker using the service endpoint maliciously.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-30124

Affected Products

Hcl Sametime