Описание
HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to induce this event by feeding a user suitable links, either directly or via another web site.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 25.1.0 (включая)
cpe:2.3:a:hcltech:unica:*:*:*:*:*:*:*:*
EPSS
Процентиль: 3%
0.00017
Низкий
3.5 Low
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-614
Связанные уязвимости
CVSS3: 3.5
github
4 месяца назад
HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to induce this event by feeding a user suitable links, either directly or via another web site.
EPSS
Процентиль: 3%
0.00017
Низкий
3.5 Low
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-614