Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10192 | Vendor Advisory |
Configurations
Information
Published : 2018-06-12 07:29
Updated : 2019-10-09 16:27
NVD link : CVE-2017-3962
Mitre link : CVE-2017-3962
JSON object : View
CWE
CWE-916
Use of Password Hash With Insufficient Computational Effort
Products Affected
mcafee
- network_security_manager