Lucene search

K
cveMitreCVE-2014-1664
HistoryJan 26, 2014 - 8:55 p.m.

CVE-2014-1664

2014-01-2620:55:06
CWE-200
mitre
web.nvd.nist.gov
23
citrix
gotomeeting
android
vulnerability
cve-2014-1664
information security
log
http
sensitive information
attackers
user ids
meeting details
authentication tokens

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.024

Percentile

90.1%

The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain user IDs, meeting details, and authentication tokens via an application that reads the system log file.

Affected configurations

Nvd
Node
citrixgotomeetingMatch5.0.799.1238---android
VendorProductVersionCPE
citrixgotomeeting5.0.799.1238cpe:2.3:a:citrix:gotomeeting:5.0.799.1238:-:-:*:-:android:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.024

Percentile

90.1%