ZeroHour

CVE-2020-6267

CVSS 3.1
5.4 medium
EPSS
<1%p54
Published
()
Modified
Description

Some sensitive cookies in SAP Disclosure Management, version 10.1, are missing HttpOnly flag, leading to sensitive cookie without Http Only flag.

Vendors
sap
Products
disclosure management
Weakness
CWE-1004, CWE-732
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.