ZeroHour

CVE-2019-8283

CVSS 3.1
6.5 medium
EPSS
1%p66
Published
()
Modified
Description

Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicious javascript to steal it.

Vendors
gemalto
Products
sentinel ldk
Weakness
CWE-1004, CWE-732
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.