Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-86mm-qq2x-p28p

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.

The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.

EPSS

Процентиль: 25%
0.00086
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.7
nvd
больше 4 лет назад

The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.

EPSS

Процентиль: 25%
0.00086
Низкий

Дефекты

CWE-319