CVE-2016-0355: CSRF
Published Aug 29, 2017
·Updated
IBM Sametime Enterprise Meeting Server 8.5.2 and 9.0 could allow an authenticated user that has been invited to a Sametime meeting room, to cause the screen sharing to cease through the use of cross-site request forgery. IBM X-Force ID: 111894.
Affected Software
5 affected components
IBM Sametime=8.5.2.0
IBM Sametime=8.5.2.1
IBM Sametime=9.0.0.0
IBM Sametime=9.0.0.1
IBM Sametime=9.0.1
Remediation
Patch Available
Event History
Aug 29, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-0355?
CVE-2016-0355 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2016-0355?
To fix CVE-2016-0355, upgrade to a patched version of IBM Sametime.
3
What impact does CVE-2016-0355 have on users?
CVE-2016-0355 allows an authenticated user to disrupt screen sharing in a Sametime meeting.
4
Who is affected by CVE-2016-0355?
CVE-2016-0355 affects users of IBM Sametime versions 8.5.2 and 9.0.
5
Can CVE-2016-0355 be exploited remotely?
Yes, CVE-2016-0355 can be exploited by an authenticated user within a meeting.