Vulnerabilities > Fedora > Pacemaker Configuration System

DATE CVE VULNERABILITY TITLE RISK
2015-05-14 CVE-2015-3983 Cryptographic Issues vulnerability in Fedora Pacemaker Configuration System 0.9.137
The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.
network
fedora CWE-310
4.3