Total vulnerabilities in the database
Sametime is impacted by a failure to invalidate sessions. The application is setting sensitive cookie values in a persistent manner in Sametime Web clients. When this happens, cookie values can remain valid even after a user has closed out their session.
Software | From | Fixed in |
---|---|---|
hcltech / sametime | 11.5 | 12.0.2 |