CVE-2021-35286

CVE-2021-35286

An issue discovered in GleamTech Filevista v7.9 allows attacker to steal session cookies via an insecure flag.

The attack allows the attacker to steal session cookies since those are not protected by a secure flag.

Secure flag is not set on the cookie.

GleamTech Filevista Version 7.9