ZeroHour

CVE-2019-19739

CVSS 3.1
7.5 high
EPSS
<1%p50
Published
()
Modified
Description

MFScripts YetiShare 3.5.2 through 4.5.3 does not set the Secure flag on session cookies, allowing the cookie to be sent over cleartext channels.

Vendors
mfscripts
Products
yetishare
Weakness
CWE-311
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.