CVE-2017-3907

Code Injection vulnerability in the ePolicy Orchestrator (ePO) extension in McAfee Threat Intelligence Exchange (TIE) Server 2.1.0 and earlier allows remote attackers to execute arbitrary HTML code to be reflected in the response web page via unspecified vector.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mcafee:mcafee_threat_intelligence_exchange:2.1.0:*:*:*:*:*:*:*

Information

Published : 2018-06-13 14:29

Updated : 2019-10-09 16:27


NVD link : CVE-2017-3907

Mitre link : CVE-2017-3907


JSON object : View

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

Advertisement

dedicated server usa

Products Affected

mcafee

  • mcafee_threat_intelligence_exchange