First published: Wed May 17 2017(Updated: )
Web Server method disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to exploit and find another hole via HTTP response header.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Network Data Loss Prevention | <=9.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-4016 is classified as a medium severity vulnerability.
To fix CVE-2017-4016, upgrade McAfee Network Data Loss Prevention to version 9.3.1 or later.
CVE-2017-4016 allows remote attackers to exploit method disclosure through an HTTP response header.
CVE-2017-4016 affects McAfee Network Data Loss Prevention version 9.3.0 and earlier.
Yes, CVE-2017-4016 can be exploited remotely by attackers.