Banner Disclosure Vulnerability in McAfee Network Data Loss Prevention
CVE-2017-4013
5.3MEDIUM
Key Information:
- Vendor
- Mcafee
- Vendor
- CVE Published:
- 17 May 2017
Summary
A banner disclosure vulnerability exists in McAfee's Network Data Loss Prevention (NDLP) 9.3.x that allows remote attackers to exploit the system by extracting sensitive product information. This can be achieved through the information exposed in the HTTP response headers, potentially exposing critical details about the server's configuration and resulting in increased risks of targeted attacks. It is crucial for organizations using this product to stay vigilant and apply available security updates.
Affected Version(s)
Network Data Loss Prevention (NDLP) 9.3.x
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved