HCL Sametime
cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*
- <= 12.0.25
A sensitive information disclosure vulnerability has been identified in HCL Sametime for iOS, specifically in versions through 12.0.25. This vulnerability allows hostnames to be inadvertently logged in application logs and certain URLs, potentially exposing sensitive information.
Exploitation of this vulnerability leads to unauthorized disclosure of sensitive information, specifically hostnames, which could be used in further attacks or to compromise user privacy.
Users are advised to upgrade to HCL Sametime for iOS version 12.0.26. The latest version can be downloaded from the App Store.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.