First published: Fri Feb 14 2014(Updated: )
The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Sametime | =8.5.2.0 | |
HCL Sametime | =8.5.2.1 | |
HCL Sametime | =9.0.0.0 | |
HCL Sametime | =9.0.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3988 is considered a moderate severity vulnerability due to its potential to allow clickjacking attacks.
To remediate CVE-2013-3988, it is recommended to upgrade IBM Sametime to the latest version that addresses this issue.
CVE-2013-3988 affects IBM Sametime versions 8.5.2 through 8.5.2.1 and 9.0.0 through 9.0.0.1.
CVE-2013-3988 can facilitate clickjacking attacks, allowing attackers to trick users into clicking on elements of a different web page.
Currently, the recommended action for CVE-2013-3988 is to update to a patched version since there are no specific workarounds documented.