CVE-2025-31966

HCL Sametime is vulnerable to broken server-side validation. While the application performs client-side input checks, these are not enforced by the web server. An attacker can bypass these restrictions by sending manipulated HTTP requests directly to the server.
Configurations

No configuration.

History

17 Mar 2026, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-17 12:16

Updated : 2026-03-17 14:20


NVD link : CVE-2025-31966

Mitre link : CVE-2025-31966

CVE.ORG link : CVE-2025-31966


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation