Session Side jacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view, add, and remove users via modification of the HTTP request.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10198 | Vendor Advisory |
http://www.securitytracker.com/id/1038523 |
Configurations
Information
Published : 2017-05-17 14:29
Updated : 2017-07-07 18:29
NVD link : CVE-2017-4014
Mitre link : CVE-2017-4014
JSON object : View
CWE
CWE-384
Session Fixation
Products Affected
mcafee
- network_data_loss_prevention