IBM Sametime Classic Meeting Server CVE-2014-4766 Information Disclosure Vulnerability
BID:70663
Info
IBM Sametime Classic Meeting Server CVE-2014-4766 Information Disclosure Vulnerability
| Bugtraq ID: | 70663 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-4766 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 17 2014 12:00AM |
| Updated: | Oct 17 2014 12:00AM |
| Credit: | Adriano Marcio Monteiro |
| Vulnerable: |
IBM Sametime Classic Meeting Server 8.5.2 1 IBM Sametime Classic Meeting Server 8.5.2 IBM Sametime Classic Meeting Server 8.5.1 2 IBM Sametime Classic Meeting Server 8.0.2 IBM Sametime Classic Meeting Server 8.0.1 IBM Sametime Classic Meeting Server 8.5.1.1 IBM Sametime Classic Meeting Server 8.5 |
| Not Vulnerable: | |
Discussion
IBM Sametime Classic Meeting Server CVE-2014-4766 Information Disclosure Vulnerability
IBM Sametime Classic Meeting Server is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to disclose sensitive information. Information obtained may lead to further attacks.
IBM Sametime Classic Meeting Server 8.0.x and 8.5.x are vulnerable.
IBM Sametime Classic Meeting Server is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to disclose sensitive information. Information obtained may lead to further attacks.
IBM Sametime Classic Meeting Server 8.0.x and 8.5.x are vulnerable.
Exploit / POC
IBM Sametime Classic Meeting Server CVE-2014-4766 Information Disclosure Vulnerability
Attackers can use a browser to exploit this issue.
Attackers can use a browser to exploit this issue.
References
IBM Sametime Classic Meeting Server CVE-2014-4766 Information Disclosure Vulnerability
References:
References: