Lack of Autocomplete Attribute in IBM Sametime Meeting Server Allows Unauthorized Access

Lack of Autocomplete Attribute in IBM Sametime Meeting Server Allows Unauthorized Access

CVE-2013-6742 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 do not have an off autocomplete attribute for a password field, which makes it easier for remote attackers to obtain access by leveraging an unattended workstation.

Learn more about our Cis Benchmark Audit For Ibm I.