Session Cookie Vulnerability in IBM Security QRadar Incident Forensics
CVE-2015-1994

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
8 November 2015

What is CVE-2015-1994?

IBM Security QRadar Incident Forensics versions 7.2.x prior to 7.2.5 Patch 5 lack the HTTPOnly flag in their Set-Cookie header for session cookies. This omission can potentially allow remote attackers to access sensitive information through script access, increasing the risk of information leakage and security breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.