logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-6739

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-6739

Description:
The session cookie in MailGates and MailAudit from Openfind does not have the HttpOnly flag enabled, allowing remote attackers to potentially steal the session cookie via XSS.
Last updated date:
10/03/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
07/16/2024
Reference url to background

https://www.openfind.com.tw/taiwan/download/Openfind_OF-ISAC-24-007.pdf

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy