7.5
CVSSv3

CVE-2019-17104

Published: 08/10/2019 Updated: 11/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

In Centreon VM up to and including 19.04.3, the cookie configuration within the Apache HTTP Server does not protect against theft because the HTTPOnly flag is not set.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

centreon centreon vm

Mailing Lists

Centreon ======== "Centreon is the N°1 Open Source IT Infrastructure Monitoring Solution" Multiple vulnerabilites were discovered in Centreon-Web in december 2018 and fixed in early 2019 over the course of two minor releases on both branches in versions 2827/2828 and 18104/18105 documentationcentreoncom/docs/centreon/en/late ...
Hello, My advisory posted yesterday contains a problematic typo: CVE-2019-17017 should have been written CVE-2019-17107 Sorry for the inconvenience it may have caused Here is the corrected context: Original advisory follows Guillaume Quéré ...