WebSphere Service Registry and Repository Cookie Security Flaw
CVE-2014-6153
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 24 December 2014
What is CVE-2014-6153?
The Web UI of IBM WebSphere Service Registry and Repository fails to set the Secure flag for cookies transmitted during HTTPS sessions. This misconfiguration allows remote attackers to potentially capture sensitive cookie information during HTTP session transmissions, increasing the risk of session hijacking. The issue affects specific versions of WSRR, creating an urgent need for users to implement mitigating strategies and updates to protect their data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.