Описание
The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.
Ссылки
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 18.1 (включая)
Одно из
cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*
cpe:2.3:a:azeotech:daqfactory:18.1:build_2347:*:*:*:*:*:*
EPSS
Процентиль: 25%
0.00086
Низкий
5.7 Medium
CVSS3
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-319
Связанные уязвимости
github
больше 3 лет назад
The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.
EPSS
Процентиль: 25%
0.00086
Низкий
5.7 Medium
CVSS3
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-319