Sametime is impacted by sensitive information passed in URL.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
The web application uses the HTTP GET method to process a request and includes sensitive information in the query string of that request.
Link | Tags |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0109082 | vendor advisory |