← Back to CVE List

CVE-2021-26589

Published: 2021-10-19T15:15Z
Last Modified: 2024-11-21T05:56Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A potential security vulnerability has been identified in HPE Superdome Flex Servers. The vulnerability could be remotely exploited to allow Cross Site Scripting (XSS) because the Session Cookie is missing an HttpOnly Attribute. HPE has provided a firmware update to resolve the vulnerability in HPE Superdome Flex Servers. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt