Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-28060 | HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously. |
Thu, 08 Jan 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech sametime |
|
| CPEs | cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:sametime:12.0.2:-:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltech
Hcltech sametime |
Tue, 29 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1188 |
Wed, 23 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 23 Oct 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously. | |
| Title | HCL Sametime is impacted by insecure services | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-10-29T14:36:33.446Z
Reserved: 2024-03-22T23:57:22.507Z
Link: CVE-2024-30124
Updated: 2024-10-23T18:34:34.118Z
Status : Analyzed
Published: 2024-10-23T16:15:05.667
Modified: 2026-01-08T19:46:12.250
Link: CVE-2024-30124
No data.
OpenCVE Enrichment
No data.
EUVD