CVE-2013-3978: Medium severity IBM Sametime vulnerability
The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 does not send the appropriate HTTP response headers to prevent unwanted caching by a web browser, which allows remote attackers to obtain sensitive information by leveraging an unattended workstation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3978?
CVE-2013-3978 has a severity rating that indicates a moderate risk due to information disclosure vulnerabilities.
How do I fix CVE-2013-3978?
To fix CVE-2013-3978, update to the latest version of HCL Sametime that addresses this cache-related issue.
What versions of HCL Sametime are affected by CVE-2013-3978?
The affected versions of HCL Sametime include 8.5.2.0, 8.5.2.1, 9.0.0.0, and 9.0.0.1.
What type of vulnerability is CVE-2013-3978?
CVE-2013-3978 is an information disclosure vulnerability due to improper HTTP response header management.
Who can exploit CVE-2013-3978?
Remote attackers can exploit CVE-2013-3978 by leveraging unattended workstations to access sensitive information.