Loading...
Loading...
IBM Lotus Notes 8.5.x before 8.5.3 FP3 does not include the HTTPOnly flag in a Set-Cookie header for a web-application cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, aka SPRs JMAS7TRNLN and SRAO8U3Q68.
December 19, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-4846
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.