CVE-2021-27764

Severity CVSS v4.0:
Pending analysis
Type:
CWE-311 Missing Encryption of Sensitive Data
Publication date:
06/05/2022
Last modified:
30/06/2023

Description

Cookie without HTTPONLY flag set. NUMBER cookie(s) was set without Secure or HTTPOnly flags. The images show the cookie with the missing flag. (WebUI)

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:bigfix_webui:-:*:*:*:*:*:*:*