← Back to CVE List

CVE-2021-27771

Published: 2022-05-12T22:15Z
Last Modified: 2024-11-21T05:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
User SID can be modified resulting in an Arbitrary File Upload or deletion of directories causing a Denial of Service. When interacting in a normal matter with the Sametime chat application, users hold a cookie containing their session ID (SID). This value is also used when sending chat messages, receiving notifications and/or transferring files. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt