Логотип exploitDog
bind:CVE-2020-14248
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-14248

Количество 2

Количество 2

nvd логотип

CVE-2020-14248

около 5 лет назад

BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-j564-pmx9-wqcj

больше 3 лет назад

BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-14248

BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS3: 5.3
0%
Низкий
около 5 лет назад
github логотип
GHSA-j564-pmx9-wqcj

BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу