ProjectPier 0.8.8 does not use the Secure flag for cookies
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/122341/Project-Pier-0.8.8-XSS-Insecure-Cookies.html | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2020-02-07 07:15
Updated : 2020-05-06 09:01
NVD link : CVE-2013-3637
Mitre link : CVE-2013-3637
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
projectpier
- projectpier