CVE-2020-4780

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/10/2020
Last modified:
26/10/2020

Description

OOTB build scripts does not set the secure attribute on session cookie which may impact IBM Curam Social Program Management 7.0.9 and 7.0,10. The purpose of the 'secure' attribute is to prevent cookies from being observed by unauthorized parties. IBM X-Force ID: 189158.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:curam_social_program_management:7.0.9.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:curam_social_program_management:7.0.10.0:*:*:*:*:*:*:*