Hi,
We are using Power Edition 4.1p.
Qualys Scanner detected below two vulnerability for cookie "isc_cState"
150122 Cookie Does Not Contain The "secure" Attribute
150123 Cookie Does Not Contain The "HTTPOnly" Attribute (1)
Both are related to cookie "isc_cState".
I found in the forum (https://forums.smartclient.com/forum...ibute-security)
"These cookies do not contain secure information. There is no issue here; security scanners point out spurious vulnerabilities more often than not."
Is there anyway to fix this issue or is this fixed in any latest version ?
Thanks
Regards
Vijay
We are using Power Edition 4.1p.
Qualys Scanner detected below two vulnerability for cookie "isc_cState"
150122 Cookie Does Not Contain The "secure" Attribute
150123 Cookie Does Not Contain The "HTTPOnly" Attribute (1)
Both are related to cookie "isc_cState".
I found in the forum (https://forums.smartclient.com/forum...ibute-security)
"These cookies do not contain secure information. There is no issue here; security scanners point out spurious vulnerabilities more often than not."
Is there anyway to fix this issue or is this fixed in any latest version ?
Thanks
Regards
Vijay
Comment