Cross-Site Request Forgery (CSRF) (aka Session Riding) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to perform unauthorized tasks such as retrieving internal system information or manipulating the database via specially crafted URLs.
References
Configurations
History
No history.
Information
Published : 2018-04-04 13:29
Updated : 2023-11-07 02:44
NVD link : CVE-2017-3965
Mitre link : CVE-2017-3965
CVE.ORG link : CVE-2017-3965
JSON object : View
Products Affected
mcafee
- network_security_manager
CWE
CWE-352
Cross-Site Request Forgery (CSRF)