Cross-Site Request Forgery (CSRF) (aka Session Riding) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to perform unauthorized tasks such as retrieving internal system information or manipulating the database via specially crafted URLs.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10192 | Vendor Advisory |
Configurations
Information
Published : 2018-04-04 06:29
Updated : 2019-10-09 16:27
NVD link : CVE-2017-3965
Mitre link : CVE-2017-3965
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
mcafee
- network_security_manager