CVE-2023-45716: HCL Sametime is impacted by a sensitive information disclosure
Published Feb 9, 2024
·Updated
Sametime is impacted by sensitive information passed in URL.
Affected Software
1 affected component
hcltech Sametime<12.0.2
Event History
Feb 9, 2024
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
DescriptionSeverity
Data Sourced
via NVD·10:15 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-45716?
CVE-2023-45716 is classified as a medium severity vulnerability due to the risk of sensitive information exposure.
2
How do I fix CVE-2023-45716?
To remediate CVE-2023-45716, users should upgrade to HCL Sametime version 12.0.2 or later.
3
What type of information is exposed in CVE-2023-45716?
CVE-2023-45716 can expose sensitive information that is passed in the URL, such as user data and authentication tokens.
4
Which versions of Sametime are affected by CVE-2023-45716?
CVE-2023-45716 affects all versions of HCL Sametime up to and including 12.0.2.
5
Is there a workaround for CVE-2023-45716 while awaiting a patch?
Currently, there are no established workarounds for CVE-2023-45716; the recommended action is to apply the necessary updates.