HIGH🇵🇱 Wersja polska

CVE-2017-3972

CVSS 8.3v3.0pub. 2018-04-03upd. 2024-11-21

Infrastructure-based foot printing vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to execute arbitrary code via the server banner leaking potentially sensitive or security relevant information.

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
  • Mcafee Network Security Manager

    APP
    Mcafee
    < 8.2.7.42.2
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCE
CWE
References

Related vulnerabilities

CVE-2019-3606HIGH7.7same product

Data Leakage Attacks vulnerability in the web portal component when in an MDR pair in McAfee Network Security ...

CVE-2017-3968HIGH7.5same product

Session fixation vulnerability in the web interface in McAfee Network Security Manager (NSM) before 8.2.7.42.2...

CVE-2017-3965HIGH8.8same product

Cross-Site Request Forgery (CSRF) (aka Session Riding) vulnerability in the web interface in McAfee Network Se...

CVE-2017-3969HIGH8.2same product

Abuse of communication channels vulnerability in the server in McAfee Network Security Management (NSM) before...

CVE-2017-3971HIGH8.2same product

Cryptanalysis vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2...