CVE-2017-3934
CVE-2017-3934
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.0%KEV nãoPoC —Patch —
Lifecycle
31 Oct 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Missing HTTP Strict Transport Security state information vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows man-in-the-middle attackers to expose confidential data via read files on the webserver.
Affected products
McAfee · Network Data Loss PreventionWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →