CVE-2023-50349

Sametime is impacted by a Cross Site Request Forgery (CSRF) vulnerability. Some REST APIs in the Sametime Proxy application can allow an attacker to perform malicious actions on the application.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*:*

History

16 Feb 2024, 21:34

Type Values Removed Values Added
CPE cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*:*
Summary
  • (es) Sametime se ve afectado por una vulnerabilidad de Cross Site Request Forgery (CSRF). Algunas API REST de la aplicación Sametime Proxy pueden permitir que un atacante realice acciones maliciosas en la aplicación.
First Time Hcltech
Hcltech sametime
CVSS v2 : unknown
v3 : 5.9
v2 : unknown
v3 : 8.8
References () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0109082 - () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0109082 - Vendor Advisory
CWE CWE-352

09 Feb 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-09 21:15

Updated : 2024-02-16 21:34


NVD link : CVE-2023-50349

Mitre link : CVE-2023-50349

CVE.ORG link : CVE-2023-50349


JSON object : View

Products Affected

hcltech

  • sametime
CWE
CWE-352

Cross-Site Request Forgery (CSRF)