Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 does not include the HTTPOnly flag in a Set-Cookie header for an unspecified cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC VPLEX GeoSynchrony 输入验证漏洞
Vulnerability Description
EMC VPLEX是美国易安信(EMC)公司的一套用于在数据中心内、跨数据中心和在数据中心之间进行信息移动和访问的新一代数据存储平台;GeoSynchrony是一套VPLEX操作系统。 EMC VPLEX GeoSynchrony 4.x和5.3之前的5.x版本中存在安全漏洞,该漏洞源于cookie的Set-Cookie header中未包含HTTPOnly标志。远程攻击者可利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A