The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 does not validate URLs in Cookie headers before using them in redirects, which has unspecified impact and remote attack vectors.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2014-02-13T22:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2013-06-07T00:00:00


Link: CVE-2013-3983

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-02-14T13:10:48.467

Modified: 2017-08-29T01:33:30.997


Link: CVE-2013-3983

JSON object: View

cve-icon Redhat Information

No data.

CWE