5
CVSSv2

CVE-2020-4780

Published: 12/10/2020 Updated: 26/10/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

OOTB build scripts does not set the secure attribute on session cookie which may impact IBM Curam Social Program Management 7.0.9 and 7.0,10. The purpose of the 'secure' attribute is to prevent cookies from being observed by unauthorized parties. IBM X-Force ID: 189158.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm curam social program management 7.0.9.0

ibm curam social program management 7.0.10.0