ZeroHour

CVE-2024-30124

CVSS 3.1
4.0 medium
EPSS
<1%p6
Published
()
Modified
Description

HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously.

Vendors
hcltech
Products
sametime
Weakness
CWE-1188
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.