CVE Published: 04/03/2019 |
CVE Updated: 17/09/2024 |
CVE Year: 2018 Source: netapp |
Vendor: NetApp |
Product: SnapCenter Server Status : PUBLISHED
CVE-2018-5482 Description
NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.