Beveiligingsadvies

CVE-2024-6739

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-07-15 03:15:03
Laatst bijgewerkt 2024-08-01 21:41:04
Toegewezen door twcert
CVSS-score 5.3
Status PUBLISHED

Beschrijving

The session cookie in MailGates and MailAudit from Openfind does not have the HttpOnly flag enabled, allowing remote attackers to potentially steal the session cookie via XSS.