VulnerabilityModified
CVE-2014-4766
IBM Sametime Classic Meeting Server 8.0.x and 8.5.x allows remote attackers to obtain sensitive information by reading an exported Record and Playback (RAP) file.
MEDIUM 5.0EPSS 1.35%
Does this matter?
Lower severity and a low EPSS score (1.35%). Track it; it rarely justifies an emergency change on its own.
Description
IBM Sametime Classic Meeting Server 8.0.x and 8.5.x allows remote attackers to obtain sensitive information by reading an exported Record and Playback (RAP) file.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.35% probability · 70th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- ibm/classic meeting server
- Source
- psirt@us.ibm.com
References
- http://secunia.com/advisories/61847
- http://www-01.ibm.com/support/docview.wss?uid=swg21687361Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94793
- http://secunia.com/advisories/61847
- http://www-01.ibm.com/support/docview.wss?uid=swg21687361Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94793
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.