CVE-2020-26732

7.5HIGH

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this

发布于: 1/14/2021更新于: 11/21/2024

描述

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

AI分析AI驱动

受影响产品

skyworthgn542vf_boa_firmware
0.94.13
skyworthgn542vf_boa
-

参考资料