Lucene search

K
cvelistMitreCVELIST:CVE-2012-1837
HistoryMar 22, 2012 - 1:00 a.m.

CVE-2012-1837

2012-03-2201:00:00
mitre
www.cve.org
3

AI Score

5.9

Confidence

Low

EPSS

0.003

Percentile

69.9%

The (1) webreports, (2) post/create-role, and (3) post/update-role programs in IBM Tivoli Endpoint Manager (TEM) before 8.2 do not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

AI Score

5.9

Confidence

Low

EPSS

0.003

Percentile

69.9%

Related for CVELIST:CVE-2012-1837