← Back

CVE-2017-4015

nvd nist
Published: May 17, 2017Modified: May 13, 2026

JSON object

Loading...
4.5
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N
Exploitability: 0.9 / Impact: 3.6
Source: NVD

Description

Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header.

Affected (1)

1 product
Network Data Loss Prevention
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 9.3.0

References (4)

Source: secure@intel.com
Broken LinkThird Party AdvisoryVDB Entry
Source: secure@intel.com
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory

Timeline

No history available yet.