← Back

CVE-2017-3968

nvd nist
Published: Jun 13, 2018Modified: Nov 21, 2024

JSON object

Loading...
9.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

Session fixation vulnerability in the web interface in McAfee Network Security Manager (NSM) before 8.2.7.42.2 and McAfee Network Data Loss Prevention (NDLP) before 9.3.4.1.5 allows remote attackers to disclose sensitive information or manipulate the database via a crafted authentication cookie.

Affected (2)

2 products
Network Data Loss Prevention
Network Security Manager
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Before 9.3.4.1.5
Before 8.2.7.42.2

References (4)

Timeline

No history available yet.