Vulnerabilities > Hcltech > Sametime > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-23 CVE-2023-50355 Information Exposure Through an Error Message vulnerability in Hcltech Sametime 11.6/12.0/12.0.2
HCL Sametime is impacted by the error messages containing sensitive information.
network
low complexity
hcltech CWE-209
5.3
2024-10-23 CVE-2024-30122 Unspecified vulnerability in Hcltech Sametime 11.6/12.0/12.0.2
HCL Sametime is impacted by misconfigured security related HTTP headers.
network
low complexity
hcltech
5.3
2024-02-09 CVE-2023-45716 Cleartext Transmission of Sensitive Information vulnerability in Hcltech Sametime 11.6/12.0
Sametime is impacted by sensitive information passed in URL.
low complexity
hcltech CWE-319
4.1
2022-12-12 CVE-2022-42446 Incorrect Default Permissions vulnerability in Hcltech Sametime 12.0
Starting with Sametime 12, anonymous users are enabled by default.
network
low complexity
hcltech CWE-276
6.5
2022-05-12 CVE-2021-27769 Unspecified vulnerability in Hcltech Sametime 11.6
Information leakage occurs when a website reveals information that could aid an attacker to further exploit the system.
network
low complexity
hcltech
5.3
2022-05-12 CVE-2021-27772 Unspecified vulnerability in Hcltech Sametime 11.6
Users are able to read group conversations without actively taking part in them.
network
low complexity
hcltech
6.5
2022-05-12 CVE-2021-27773 Improper Restriction of Rendered UI Layers or Frames vulnerability in Hcltech Sametime 11.6
This vulnerability allows users to execute a clickjacking attack in the meeting's chat.
network
low complexity
hcltech CWE-1021
4.3