Description
HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to induce this event by feeding a user suitable links, either directly or via another web site.
Problem types
CWE-614 Sensitive Cookie in HTTPS Session Without 'Secure' Attribute
Product status
<= 25.1
References
support.hcl-software.com/...rticle&sysparm_article=KB0124417