Loading market data...
← Back to CVE feed

CVE-2026-66249

LOW CVSS 3.1 View on NVD ↗

Description

iControl is affected by a Missing Secure Attribute vulnerability, which could allow an attacker to intercept cookies transmitted over unencrypted HTTP connections, enabling the unauthorized extraction of sensitive information such as session identifiers.

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Published: Oct 01, 2026 14:17 UTC Modified: Oct 01, 2026 15:07 UTC