CVE-2016-0356: CSRF
IBM Sametime Enterprise Meeting Server 8.5.2 and 9.0 could allow an authenticated user that has been invited to a Sametime meeting room, to cause the screen sharing to cease through the use of cross-site request forgery. IBM X-Force ID: 111895.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0356?
CVE-2016-0356 has a medium severity rating, indicating potential risk to system integrity when exploited.
How do I fix CVE-2016-0356?
To fix CVE-2016-0356, update to the latest version of HCL Sametime that includes patches addressing this vulnerability.
Who is affected by CVE-2016-0356?
CVE-2016-0356 affects users of IBM Sametime Enterprise Meeting Server versions 8.5.2 and 9.0.
What type of attack does CVE-2016-0356 involve?
CVE-2016-0356 involves a cross-site request forgery (CSRF) attack that can disrupt screen sharing in meeting rooms.
Can an attacker exploit CVE-2016-0356 without user interaction?
Yes, an attacker can exploit CVE-2016-0356 during a meeting if an invited authenticated user is present.