Vulnerabilities
Vulnerable Software
Ibm:  >> Datacap  >> 9.1.6  Security Vulnerabilities
IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 296001.
CVSS Score
4.3
EPSS Score
0.0
Published
2024-07-14
IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 temporarily stores data from different environments that could be obtained by a malicious user. IBM X-Force ID: 295791.
CVSS Score
4.1
EPSS Score
0.0
Published
2024-07-14


Contact Us

Shodan ® - All rights reserved