CVE-2017-4015
4.5
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N
Exploitability: 0.9 / Impact: 3.6
Source: NVD
Description
Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header.
Affected (1)
Products: Mcafee: Network Data Loss Prevention
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 9.3.0 |
References (4)
Source: secure@intel.com
Broken LinkThird Party AdvisoryVDB Entry
Source: secure@intel.com
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Timeline
No history available yet.