The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1, as used in the Lotus Notes client and separately, might allow local users to obtain sensitive information by leveraging the persistence of cleartext password strings within process memory.
2013-06-21T14:55:01.107
2025-04-11T00:51:21.963
Deferred
CVSSv2: 1.9 (LOW)
AV:L/AC:M/Au:N/C:P/I:N/A:N
3.4
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | lotus_sametime | 8.5.1 | Yes |
Application | ibm | lotus_sametime | 8.5.1.1 | Yes |
Application | ibm | lotus_sametime | 8.5.1.2 | Yes |
Application | ibm | lotus_sametime | 8.5.2 | Yes |
Application | ibm | lotus_sametime | 8.5.2.1 | Yes |
Application | ibm | sametime | 8.5.1 | Yes |
Application | ibm | sametime | 8.5.1.1 | Yes |
Application | ibm | sametime | 8.5.1.2 | Yes |
Application | ibm | sametime | 8.5.2 | Yes |
Application | ibm | sametime | 8.5.2.1 | Yes |