RELY-PCIe v22.2.1 to v23.1.0 does not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to send those cookies in cleartext over an HTTP session.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-09-11 17:15
Updated : 2024-11-25 18:15
NVD link : CVE-2024-44575
Mitre link : CVE-2024-44575
CVE.ORG link : CVE-2024-44575
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource