mcafee network-security-management CVE-2017-3968 vulnerability in McAfee Products
Published on June 13, 2018

McAfee Network Security Management (NSM) and Network Data Loss Prevention (NDLP)- Password recovery exploitation vulnerability
Session fixation vulnerability in the web interface in McAfee Network Security Manager (NSM) before 8.2.7.42.2 and McAfee Network Data Loss Prevention (NDLP) before 9.3.4.1.5 allows remote attackers to disclose sensitive information or manipulate the database via a crafted authentication cookie.

NVD


Products Associated with CVE-2017-3968

stack.watch emails you whenever new vulnerabilities are published in McAfee Network Security Management or McAfee Network Data Loss Prevention. Just hit a watch button to start following.

 
 

Affected Versions

McAfee Network Security Management (NSM): McAfee Network Data Loss Prevention (NDLP):

Exploit Probability

EPSS
0.51%
Percentile
66.07%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.