CVE-2017-3971: SB10192 - Network Security Management (NSM) - Cryptanalysis vulnerability
Cryptanalysis vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to view confidential information via insecure use of RC4 encryption cyphers.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-3971?
CVE-2017-3971 is a cryptanalysis vulnerability in the web interface in McAfee Network Security Management (NSM) before version 8.2.7.42.2.
How does CVE-2017-3971 affect McAfee Network Security Management?
CVE-2017-3971 allows attackers to view confidential information through insecure use of RC4 encryption cyphers in the web interface of McAfee Network Security Management before version 8.2.7.42.2.
What is the severity of CVE-2017-3971?
The severity of CVE-2017-3971 is high with a CVSS score of 6.5.
How can I fix CVE-2017-3971?
To fix CVE-2017-3971, it is recommended to update McAfee Network Security Management to version 8.2.7.42.2 or later.
Where can I find more information about CVE-2017-3971?
You can find more information about CVE-2017-3971 on the official McAfee website: https://kc.mcafee.com/corporate/index?page=content&id=SB10192