CVE-2017-4013: Infoleak
Published May 17, 2017
·Updated
Banner Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to obtain product information via HTTP response header.
Affected Software
1 affected component
Mcafee Network Data Loss Prevention<=9.3.0
Event History
May 17, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-4013?
CVE-2017-4013 is classified as a medium severity vulnerability.
2
How do I fix CVE-2017-4013?
To fix CVE-2017-4013, upgrade McAfee Network Data Loss Prevention to a version newer than 9.3.0.
3
What impact does CVE-2017-4013 have on my system?
CVE-2017-4013 allows remote attackers to gather sensitive product information through HTTP response headers.
4
Is CVE-2017-4013 exploitable remotely?
Yes, CVE-2017-4013 is exploitable remotely, making it a concern for exposed systems.
5
Which versions of McAfee are affected by CVE-2017-4013?
CVE-2017-4013 affects McAfee Network Data Loss Prevention versions up to and including 9.3.0.