McAfee Network Data Loss Prevention (NDLP) 9.3.0

CPE Details

McAfee Network Data Loss Prevention (NDLP) 9.3.0
9.3.0
2019-10-02
12h00 +00:00
2019-10-02
12h00 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:mcafee:network_data_loss_prevention:9.3.0:*:*:*:*:*:*:*

Informations

Vendor

mcafee

Product

network_data_loss_prevention

Version

9.3.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2017-3968 2018-06-13 18h00 +00:00 Session fixation vulnerability in the web interface in McAfee Network Security Manager (NSM) before 8.2.7.42.2 and McAfee Network Data Loss Prevention (NDLP) before 9.3.4.1.5 allows remote attackers to disclose sensitive information or manipulate the database via a crafted authentication cookie.
9.1
Critical
CVE-2017-3933 2017-10-31 14h00 +00:00 Embedding Script (XSS) in HTTP Headers vulnerability in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via a cross site request forgery attack.
5.4
Medium
CVE-2017-3934 2017-10-31 14h00 +00:00 Missing HTTP Strict Transport Security state information vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows man-in-the-middle attackers to expose confidential data via read files on the webserver.
5.9
Medium
CVE-2017-4011 2017-05-17 19h00 +00:00 Embedding Script (XSS) in HTTP Headers vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to get session/cookie information via modification of the HTTP request.
6.1
Medium
CVE-2017-4012 2017-05-17 19h00 +00:00 Privilege Escalation vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via modification of the HTTP request.
6.5
Medium
CVE-2017-4013 2017-05-17 19h00 +00:00 Banner Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to obtain product information via HTTP response header.
5.3
Medium
CVE-2017-4014 2017-05-17 19h00 +00:00 Session Side jacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view, add, and remove users via modification of the HTTP request.
8
High
CVE-2017-4015 2017-05-17 19h00 +00:00 Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header.
4.5
Medium
CVE-2017-4016 2017-05-17 19h00 +00:00 Web Server method disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to exploit and find another hole via HTTP response header.
5.3
Medium
CVE-2017-4017 2017-05-17 19h00 +00:00 User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appliance web interface.
5.3
Medium