Lucene search

K
redhatcveRedhat.comRH:CVE-2016-5409
HistoryAug 12, 2016 - 4:19 a.m.

CVE-2016-5409

2016-08-1204:19:16
redhat.com
access.redhat.com
16

EPSS

0.003

Percentile

69.0%

Red Hat OpenShift Enterprise 2 does not include the HTTPOnly flag in a Set-Cookie header for the GEARID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to the cookies.

EPSS

0.003

Percentile

69.0%

Related for RH:CVE-2016-5409