1.9
CVSSv2

CVE-2014-0890

Published: 06/03/2014 Updated: 29/08/2017
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, 8.5.2.1, 9.0, and 9.0.0.1, when a certain com.ibm.collaboration.realtime.telephony.*.level setting is used, logs cleartext passwords during Audio/Video chat sessions, which allows local users to obtain sensitive information by reading a log file.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm sametime 8.5.1.1

ibm sametime 8.5.1.0

ibm sametime 9.0.0.1

ibm sametime 8.5.1.2

ibm sametime 8.5.2.1

ibm sametime 8.5.2.0

ibm sametime 9.0.0.0