CVE-2012-3308

IBM Sametime - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in IBM Sametime 8.0.2 through 8.5.2.1 allows remote attackers to inject arbitrary web script or HTML via an IM chat.

Scores

EPSS 0.0023
EPSS Percentile 45.4%

Classification

CWE
CWE-79
Status published

Affected Products (8)

ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
n/a/n/a

Timeline

Published Aug 17, 2012
Tracked Since Feb 18, 2026