CVE-2014-3014

IBM Sametime - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in the Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

Scores

EPSS 0.0019
EPSS Percentile 40.5%

Details

CWE
CWE-79
Status published
Products (13)
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
ibm/sametime
... and 3 more
Published May 26, 2014
Tracked Since Feb 18, 2026