CyberSec.Space Logo
CVEブラウザに戻る

CVE-2017-14053

HIGH
7.5
CVSS Severity Score
EPSS Score0.0210%
EPSS Percentile22.56th
Published2017年9月1日
Last Modified2026年5月13日

Vulnerability Description

NetApp OnCommand Unified Manager for Clustered Data ONTAP before 7.2P1 does not set the secure flag for an unspecified cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an HTTP session.

Affected Platforms (CPE)

📦
Netapp

Oncommand Unified Manager For Clustered Data Ontap

<= 7.2

References & Advisories

関連する脆弱性情報