NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: netapp
Published: 2019-03-04T23:00:00Z
Updated: 2024-09-17T00:16:19.973Z
Reserved: 2018-01-12T00:00:00
Link: CVE-2018-5482
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-03-04T23:29:00.213
Modified: 2024-11-21T04:08:53.410
Link: CVE-2018-5482
Redhat
No data.