Web Server Cookie Vulnerability in SIMATIC Products by Siemens
CVE-2016-8672
What is CVE-2016-8672?
A security flaw exists in certain SIMATIC products where the integrated web server transmits cookies without the 'secure' flag. This omission can lead to potential data leakage when cookies are sent over unencrypted connections. Modern web browsers recognize the 'secure' flag as a critical component for safe cookie transmission, making its absence a risk for exploitation, especially under clear text transmission scenarios. It is crucial for users to assess their systems and implement security measures to protect sensitive information from potential interception.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved