Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27512
HistoryOct 02, 2020 - 6:07 a.m.

Cookie Injection

2020-10-0206:07:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.004 Low

EPSS

Percentile

75.1%

php7 is vulnerable to cookie injection. The vulnerability exists as cookie names are url-decoded, allowing cookies with prefixes such as __Host to be forged.

References