Security Advisory

CVE-2018-5482

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-04 23:00:00
Last updated 2024-09-17 00:16:19
Assigner netapp
CVSS score not scored
State PUBLISHED

Description

NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.