CVE-2016-2966

Severity
4.3MEDIUM
EPSS
0.2%
top 56.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 29
Latest updateMay 17

Description

IBM Sametime 8.5.1 and 9.0 could allow an authenticated user to enumerate meeting rooms by guessing the meeting room id. IBM X-Force ID: 113847.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

CVEListV5ibm/sametime5 versions+4
NVDibm/sametime7 versions+6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-mcc7-wvgg-wq6v: IBM Sametime 82022-05-17
CVEList
CVE-2016-2966: IBM Sametime 82017-08-29
CVE-2016-2966 (MEDIUM CVSS 4.3) | IBM Sametime 8.5.1 and 9.0 could al | cvebase.io