VYPR
Unrated severityNVD Advisory· Published Jan 31, 2014· Updated Jun 17, 2026

CVE-2013-6727

CVE-2013-6727

Description

The Connect client in IBM Sametime 8.5.2 through 8.5.2.1 and 9.0 before HF1 does not properly restrict unsigned Java plugins, which allows remote attackers to obtain sensitive information via unspecified vectors.

Affected products

4
  • IBM/Sametime4 versions
    cpe:2.3:a:ibm:sametime:8.5.2.0:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:ibm:sametime:8.5.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:sametime:8.5.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:sametime:9.0.0.0:*:*:*:*:*:*:*
    • (no CPE)range: 8.5.2 to 8.5.2.1, and 9.0 before HF1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.