SB10244 - Network Security Management (NSM) - Abuse of Functionality vulnerability
CVE-2018-6681
5.5MEDIUM
Key Information:
- Vendor
- Mcafee
- Vendor
- CVE Published:
- 17 July 2018
Summary
Abuse of Functionality vulnerability in the web interface in McAfee Network Security Management (NSM) 9.1.7.11 and earlier allows authenticated users to allow arbitrary HTML code to be reflected in the response web page via appliance web interface.
Affected Version(s)
Network Security Management (NSM) 9.1.7.11
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved