Back

LOW

HCL iControl is affected by a Missing Secure Attribute vulnerability

Published Oct 1, 2026

Description

iControl is affected by a Missing Secure Attribute vulnerability, which could allow an attacker to intercept cookies transmitted over unencrypted HTTP connections, enabling the unauthorized extraction of sensitive information such as session identifiers.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner HCL
Published Oct 1, 2026
Updated Oct 1, 2026
Reserved Jul 24, 2026
NVD
Status Deferred
Modified Oct 1, 2026
Red Hat
Severity n/a
Public date n/a