TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2014-0174

N/A

Beschreibung

Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht7/11/2014
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

redhat:enterprise_mrg

Schwachen (CWE)

CWE-200

Referenzen

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.