First published: Tue Jun 14 2022(Updated: )
In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the secure flag set.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Softwareag Connx | =6.2.0.1269 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-40650 is a vulnerability in Connx Version 6.2.0.1269 (20210623) where a cookie can be issued by the application without the secure flag set.
CVE-2021-40650 has a severity level of medium, with a CVSS score of 6.5.
CVE-2021-40650 affects Connx Version 6.2.0.1269 by allowing a cookie to be issued without the secure flag set.
To fix the CVE-2021-40650 vulnerability, ensure that the secure flag is set for all cookies issued by the Connx application.
More information about CVE-2021-40650 can be found on the Connx website or the GitHub repository associated with the vulnerability.