Exploitation of session variables, resource IDs and other trusted credentials vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to exploit or harm a user's browser via reusing the exposed session token in the application URL.
References
Configurations
History
No history.
Information
Published : 2018-04-04 13:29
Updated : 2023-11-07 02:44
NVD link : CVE-2017-3966
Mitre link : CVE-2017-3966
CVE.ORG link : CVE-2017-3966
JSON object : View
Products Affected
mcafee
- network_security_manager
CWE
CWE-613
Insufficient Session Expiration