Логотип exploitDog
bind:CVE-2020-27650
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-27650

Количество 2

Количество 2

nvd логотип

CVE-2020-27650

больше 5 лет назад

Synology DiskStation Manager (DSM) before 6.2.3-25426-2 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-pr6j-q8cq-rhhr

больше 3 лет назад

Synology DiskStation Manager (DSM) before 6.2.3-25426-2 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-27650

Synology DiskStation Manager (DSM) before 6.2.3-25426-2 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

CVSS3: 5.8
0%
Низкий
больше 5 лет назад
github логотип
GHSA-pr6j-q8cq-rhhr

Synology DiskStation Manager (DSM) before 6.2.3-25426-2 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

CVSS3: 3.7
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу