← Back

CVE-2021-27772

nvd nist
Published: May 12, 2022Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Users are able to read group conversations without actively taking part in them. Next to one to one conversations, users are able to start group conversations with multiple users. It was found possible to obtain the contents of these group conversations without being part of it. This could lead to information leakage where confidential information discussed in private groups is read by other users without the users knowledge.

Affected (1)

Products: Hcltech: Sametime
1 product
Sametime
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 11.6

References (2)

Timeline

No history available yet.