First published: Wed May 17 2017(Updated: )
Privilege Escalation vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via modification of the HTTP request.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Network Data Loss Prevention | <=9.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-4012 is classified as a privilege escalation vulnerability.
To fix CVE-2017-4012, upgrade McAfee Network Data Loss Prevention to version 9.3.1 or higher.
Remote authenticated users of McAfee Network Data Loss Prevention versions 9.3.0 and below are affected by CVE-2017-4012.
CVE-2017-4012 can be exploited through modified HTTP requests to gain unauthorized access to confidential information.
Systems running McAfee Network Data Loss Prevention version 9.3.0 or earlier are vulnerable to CVE-2017-4012.