IBM Security Guardium Big Data Intelligence (SonarG) 4.0 does not set the secure attribute for cookies in HTTPS sessions, which could cause the user agent to send those cookies in plaintext over an HTTP session. IBM X-Force ID: 161210.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2019-10-28T23:36:10.730021Z
Updated: 2024-09-16T20:37:40.736Z
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-4330
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-10-29T00:15:11.497
Modified: 2024-11-21T04:43:29.017
Link: CVE-2019-4330
Redhat
No data.