Vulnerabilities > CVE-2015-1993 - Unspecified vulnerability in IBM Security Qradar Incident Forensics
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
IBM Security QRadar Incident Forensics 7.2.x before 7.2.5 Patch 5 does not set the secure flag for unspecified cookies in an https session, which makes it easier for remote attackers to capture these cookies by intercepting their transmission within an http session.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |
Seebug
bulletinFamily | exploit |
description | No description provided by source. |
id | SSV:89761 |
last seen | 2017-11-19 |
modified | 2015-11-16 |
published | 2015-11-16 |
reporter | Root |
title | IBM Security QRadar Incident Forensics中间人攻击漏洞(CVE-2015-1993) |