{ "id": "CVE-2016-2974", "sourceIdentifier": "psirt@us.ibm.com", "published": "2017-08-29T21:29:00.340", "lastModified": "2017-09-01T18:13:21.930", "vulnStatus": "Analyzed", "cveTags": [], "descriptions": [ { "lang": "en", "value": "IBM Sametime Connect 8.5.2 and 9.0, after uninstalling the Sametime Rich Client, could disclose potentially sensitive information related to the Sametime environment as well as other users on the local machine of the user. IBM X-Force ID: 113934." }, { "lang": "es", "value": "IBM Sametime Connect 8.5.2 y 9.0, despu\u00e9s de desinstalar Sametime Rich Client, podr\u00eda divulgar informaci\u00f3n potencialmente sensible sobre el entorno de Sametime, as\u00ed como de otros usuarios que se encuentren en la misma m\u00e1quina local del usuario. IBM X-Force ID: 113934." } ], "metrics": { "cvssMetricV30": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.0", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N", "attackVector": "LOCAL", "attackComplexity": "LOW", "privilegesRequired": "LOW", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 3.3, "baseSeverity": "LOW" }, "exploitabilityScore": 1.8, "impactScore": 1.4 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N", "accessVector": "LOCAL", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 2.1 }, "baseSeverity": "LOW", "exploitabilityScore": 3.9, "impactScore": 2.9, "acInsufInfo": true, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-200" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:sametime:8.5.2.0:*:*:*:*:*:*:*", "matchCriteriaId": "4D106630-D04F-406F-A3BD-029777B8E8F9" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:sametime:8.5.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "A84C4658-AEE7-4C63-A188-795B8FEB3A47" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:sametime:9.0.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "624F11B5-9305-49E9-A7F1-45845234BFD6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:sametime:9.0.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "1E5B5DF0-0678-4E47-AC68-E24B5A93597D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:ibm:sametime:9.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "F6F45A7B-1865-400A-A2E0-6E7BE46F6C8C" } ] } ] } ], "references": [ { "url": "http://www.ibm.com/support/docview.wss?uid=swg22006444", "source": "psirt@us.ibm.com", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://www.securityfocus.com/bid/100528", "source": "psirt@us.ibm.com", "tags": [ "Third Party Advisory", "VDB Entry" ] }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/113934", "source": "psirt@us.ibm.com", "tags": [ "VDB Entry", "Vendor Advisory" ] } ] }