CVE-2018-5482

Publication date

2019-03-04 23:00:00

Family

netapp

State

PUBLISHED

Description

NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.