First published: Tue Aug 29 2017(Updated: )
IBM Sametime Meeting Server 8.5.2 and 9.0 could allow an authenticated and invited user of Sametime meeting to lower any or all hands in an e-meeting, thus spoofing results of votes in the meeting. IBM X-Force ID: 113803.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Sametime | =8.5.2.0 | |
HCL Sametime | =8.5.2.1 | |
HCL Sametime | =9.0.0.0 | |
HCL Sametime | =9.0.0.1 | |
HCL Sametime | =9.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10503 is considered a moderate severity vulnerability due to its potential impact on meeting integrity.
To fix CVE-2016-10503, update your IBM Sametime Meeting Server to the latest patched version as recommended by IBM.
Users of IBM Sametime Meeting Server versions 8.5.2, 8.5.2.1, 9.0.0.0, 9.0.0.1, and 9.0.1 are affected by CVE-2016-10503.
The risks associated with CVE-2016-10503 include the potential for vote manipulation during meetings, leading to compromised decision-making.
CVE-2016-10503 is a local vulnerability that can be exploited by authenticated users during an e-meeting.