CVE-2019-4638

3.7LOW

IBM Security Secret Server 10.7 does not set the secure attribute on authorization tokens or session cookies. This could allow an attacker to obtain sensitive information using man in the middle techn

发布于: 1/28/2020更新于: 11/21/2024

描述

IBM Security Secret Server 10.7 does not set the secure attribute on authorization tokens or session cookies. This could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 170044.

AI分析AI驱动

受影响产品

ibmsecurity_secret_server

参考资料