Session Cookie Vulnerability in IBM Security QRadar Incident Forensics
CVE-2015-1994
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 8 November 2015
What is CVE-2015-1994?
IBM Security QRadar Incident Forensics versions 7.2.x prior to 7.2.5 Patch 5 lack the HTTPOnly flag in their Set-Cookie header for session cookies. This omission can potentially allow remote attackers to access sensitive information through script access, increasing the risk of information leakage and security breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.