Insufficient Input Sanitization in HCL Sametime
CVE-2025-32000

4.3MEDIUM

Key Information:

Vendor
CVE Published:
24 September 2026

What is CVE-2025-32000?

HCL Sametime is impacted by a vulnerability due to insufficient input sanitization, which allows for the improper handling of user input. This allows malicious actors to exploit the application by sending specially crafted inputs that are implicitly or explicitly trusted. Organizations using HCL Sametime should ensure proper sanitization measures are implemented to mitigate potential risks associated with this vulnerability.

Affected Version(s)

HCL Sametime 12.0.33 and older

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.