First published: Wed May 17 2017(Updated: )
User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appliance web interface.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Network Data Loss Prevention | <=9.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-4017 is classified as a medium severity vulnerability due to the potential for user information disclosure.
To fix CVE-2017-4017, you should apply the latest security patches and updates provided by McAfee for the Network Data Loss Prevention software.
CVE-2017-4017 affects McAfee Network Data Loss Prevention versions up to 9.3.0.
CVE-2017-4017 is a user name disclosure vulnerability that allows remote attackers to view user information.
There is currently no evidence suggesting public exploitation of CVE-2017-4017, but remote attacks are possible.