TROYANOSYVIRUS
Voltar para CVEs

CVE-2014-0174

N/A

Descricao

Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado7/11/2014
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

redhat:enterprise_mrg

Fraquezas (CWE)

CWE-200

Referencias

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.