PT-2020-14707 · Solarwinds · Solarwinds N-Central
Published
2020-10-19
·
Updated
2020-10-29
·
CVE-2020-15910
CVSS v3.1
4.7
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SolarWinds N-Central versions prior to 12.3 GA
Description
The issue allows an attacker to influence the cookie with JavaScript, potentially extracting the JSESSIONID. This could be achieved by sending the user to a prepared webpage or by influencing JavaScript. The lack of the HTTPOnly flag in the Set-Cookie header for the session cookie makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.
Recommendations
For SolarWinds N-Central versions prior to 12.3 GA, consider updating to a version that includes the HTTPOnly flag in the Set-Cookie header for the session cookie to prevent JavaScript access. As a temporary workaround, restrict access to sensitive information and consider implementing additional security measures to protect against session cookie theft.
Fix
Incorrect Permission
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Solarwinds N-Central