Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-6344
HistorySep 07, 2016 - 6:59 p.m.

Design/Logic Flaw

2016-09-0718:59:00
PRIOn knowledge base
www.prio-n.com
5

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

64.8%

Red Hat JBoss BPM Suite 6.3.x does not include the HTTPOnly flag in a Set-Cookie header for session cookies, which makes it easier for remote attackers to obtain potentially sensitive information via script access to the cookies.

CPENameOperatorVersion
jboss_bpm_suiteeq6.3

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

64.8%

Related for PRION:CVE-2016-6344