HCL MyCloud was affected with Cookie Attribute Path Not Set. It may increase the risk of unauthorized access to session data or authentication tokens.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Hcltech Mycloud
cpe:2.3:a:hcltech:mycloud:10.8.1:*:*:*:*:*:*:*
|
— | — |
|
Hcltech Dryice_Mycloud
cpe:2.3:a:hcltech:dryice_mycloud:10.8.1:*:*:*:*:*:*:*
|
— | — |