← Back

CVE-2024-30124

nvd nist
Published: Oct 23, 2024Modified: Jun 17, 2026

JSON object

Loading...
4.0
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 2.5 / Impact: 1.4
Source: NVD

Description

HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously.

Affected (2)

Products: Hcltech: Sametime
1 product
Sametime
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Hcltech
Before 12.0.2
Version 12.0.2

Timeline

No history available yet.