Security Advisory

CVE-2013-3978

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-02-13 22:00:00
Last updated 2024-08-06 16:30:49
Assigner ibm
State PUBLISHED

Description

The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 does not send the appropriate HTTP response headers to prevent unwanted caching by a web browser, which allows remote attackers to obtain sensitive information by leveraging an unattended workstation.