CVE-2014-3088
IBM Sametime Meeting Server 8.5.1 - Authenticated Arbitrary File Upload via Content-Type Header Manipulation
Title source: llmDescription
stconf.nsf in IBM Sametime Meeting Server 8.5.1 relies on the client to validate the file format used in wAttach?OpenForm multipart/form-data POST requests, which allows remote authenticated users to bypass intended upload restrictions by modifying the Content-Type header and file extension, as demonstrated by replacing a text/plain .txt upload with an application/octet-stream .exe upload.
References (4)
Core 4
Core References
Exploit, Third Party Advisory x_refsource_misc
http://packetstormsecurity.com/files/127294
Exploit, Third Party Advisory x_refsource_misc
http://packetstormsecurity.com/files/127829/IBM-Sametime-Meet-Server-8.5-Arbitrary-File-Upload.html
Various Sources x_refsource_confirm
http://linux.oracle.com/errata/ELSA-2014-0747.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/68291
Scores
EPSS
0.0197
EPSS Percentile
78.4%
Details
CWE
CWE-264
Status
published
Products (1)
ibm/sametime_meeting_server
8.5.1
Published
Jul 01, 2014
Tracked Since
Feb 18, 2026