First published: Wed Apr 04 2018(Updated: )
Abuse of communication channels vulnerability in the server in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows man-in-the-middle attackers to decrypt messages via an inadequate implementation of SSL.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Network Security Manager | <8.2.7.42.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-3969 is high.
CVE-2017-3969 affects McAfee Network Security Management (NSM) before 8.2.7.42.2.
An attacker can exploit CVE-2017-3969 by performing a man-in-the-middle attack to decrypt messages due to an inadequate implementation of SSL.
To fix CVE-2017-3969, update McAfee Network Security Management (NSM) to version 8.2.7.42.2 or higher.
You can find more information about CVE-2017-3969 [here](https://kc.mcafee.com/corporate/index?page=content&id=SB10192).