CVE-2017-3967
Summary
| CVE | CVE-2017-3967 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-04-04 13:29:00 UTC |
| Updated | 2023-11-07 02:44:00 UTC |
| Description | Target influence via framing vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to inject arbitrary web script or HTML via application pages inability to break out of 3rd party HTML frames. |
Risk And Classification
Problem Types: CWE-94
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mcafee | Network Security Manager | All | All | All | All |
| Application | Mcafee | Network Security Manager | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| McAfee - Security Bulletin: Network Security Manager updates fix CVE-2017-3960, CVE-2017-3961, CVE-2017-3962, CVE-2017-3964, CVE-2017-3965, CVE-2017-3966, CVE-2017-3967, CVE-2017-3968, CVE-2017-3969, CVE-2017-3971, CVE-2017-3972 | kc.mcafee.com | ||
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.