CVE Database
/

CVE-2018-5482

Back to search

CVE-2018-5482

Published: Mar 4, 2019

Modified: Sep 17, 2024

PUBLISHED

Description

NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.

VendorProductVersions

NetApp

SnapCenter Server

affected
Versions prior to 4.1

References

107274
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now