Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository ikus060/rdiffweb prior to 2.4.6.
References
Link | Resource |
---|---|
https://github.com/ikus060/rdiffweb/commit/ac334dd27ceadac0661b1e2e059a8423433c3fee | Patch Third Party Advisory |
https://huntr.dev/bounties/39889a3f-8bb7-448a-b0d4-a18c671bbd23 | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2022-09-21T16:55:14
Updated: 2022-09-21T16:55:14
Reserved: 2022-09-20T00:00:00
Link: CVE-2022-3250
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-09-21T17:15:09.557
Modified: 2022-09-23T17:00:34.603
Link: CVE-2022-3250
JSON object: View
Redhat Information
No data.