Exploitation of session variables, resource IDs and other trusted credentials vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to exploit or harm a user's browser via reusing the exposed session token in the application URL.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10192 | Vendor Advisory |
Configurations
Information
Published : 2018-04-04 06:29
Updated : 2019-10-09 16:27
NVD link : CVE-2017-3966
Mitre link : CVE-2017-3966
JSON object : View
CWE
CWE-613
Insufficient Session Expiration
Products Affected
mcafee
- network_security_manager