VYPR
Medium severity4.8NVD Advisory· Published Feb 10, 2024· Updated Jun 17, 2026

CVE-2023-45698

CVE-2023-45698

Description

Sametime is impacted by lack of clickjacking protection in Outlook add-in. The application is not implementing appropriate protections in order to protect users from clickjacking attacks.

Affected products

9
  • cpe:2.3:a:hcltech:sametime_chat_and_meetings:11.5:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:11.5:*:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:11.6:*:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:11.6:if1:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:12.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:12.0.1:fp1:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:12.0:*:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:sametime_chat_and_meetings:12.0:fp1:*:*:*:*:*:*
  • Range: 11.5, 11.6, 11.6 IF1, 12.0, 12.0 FP1, 12.0.1, 12.0.1 FP1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.