{ "id": "CVE-2023-37540", "sourceIdentifier": "psirt@hcl.com", "published": "2024-02-23T07:15:47.700", "lastModified": "2024-02-23T16:14:43.447", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "Sametime Connect desktop chat client includes, but does not use or require, the use of an Eclipse feature called Secure Storage. Using this Eclipse feature to store sensitive data can lead to exposure of that data.\n" }, { "lang": "es", "value": "El cliente de chat de escritorio de Sametime Connect incluye, pero no utiliza ni requiere, el uso de una caracter\u00edstica de Eclipse llamada Almacenamiento seguro. El uso de esta funci\u00f3n de Eclipse para almacenar datos confidenciales puede provocar la exposici\u00f3n de esos datos." } ], "metrics": { "cvssMetricV31": [ { "source": "psirt@hcl.com", "type": "Secondary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N", "attackVector": "LOCAL", "attackComplexity": "LOW", "privilegesRequired": "LOW", "userInteraction": "REQUIRED", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "availabilityImpact": "NONE", "baseScore": 3.9, "baseSeverity": "LOW" }, "exploitabilityScore": 1.3, "impactScore": 2.5 } ] }, "references": [ { "url": "https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0109082", "source": "psirt@hcl.com" } ] }