CVE-2013-0534

medium

Description

The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1, as used in the Lotus Notes client and separately, might allow local users to obtain sensitive information by leveraging the persistence of cleartext password strings within process memory.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/82656

http://www-01.ibm.com/support/docview.wss?uid=swg21635218

Details

Source: Mitre, NVD

Published: 2013-06-21

Updated: 2017-08-29

Risk Information

CVSS v2

Base Score: 1.9

Vector: CVSS2#AV:L/AC:M/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Severity: Medium