Skip to main content

Vendor/product archive

mcafee / network_security_manager CVEs

Beta · best-effort

19 CVEs tagged to mcafee / network_security_manager0 Critical, 6 High, 11 Medium, 2 Low, 0 Unrated.

CVE-2021-4038

Published Dec 9, 2021

Cross Site Scripting (XSS) vulnerability in McAfee Network Security Manager (NSM) prior to 10.1 Minor 7 allows a remote authenticated administrator to embed a XSS in the administr…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7258

Published Mar 18, 2020

Cross site scripting vulnerability in McAfee Network Security Management (NSM) Prior to 9.1 update 6 Mar 2020 Update allows attackers to unspecified impact via unspecified vectors.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7256

Published Mar 18, 2020

Cross site scripting vulnerability in McAfee Network Security Management (NSM) Prior to 9.1 update 6 Mar 2020 Update allows attackers to unspecified impact via unspecified vectors.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3602

Published May 15, 2019

Cross Site Scripting (XSS) vulnerability in McAfee Network Security Manager (NSM) Prior to 9.1 Update 5 allows an authenticated administrator to embed an XSS in the administrator…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3606

Published Mar 26, 2019

Data Leakage Attacks vulnerability in the web portal component when in an MDR pair in McAfee Network Security Management (NSM) 9.1 < 9.1.7.75 (Update 4) and 9.2 < 9.2.7.31 Update2…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3597

Published Mar 26, 2019

Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Update 2) allows unauthenticated users to gain administrator…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-6681

Published Jul 17, 2018

Abuse of Functionality vulnerability in the web interface in McAfee Network Security Management (NSM) 9.1.7.11 and earlier allows authenticated users to allow arbitrary HTML code…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3962

Published Jun 12, 2018

Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers t…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3960

Published Jun 12, 2018

Exploitation of Authorization vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows authenticated users to gain elevated privileg…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3961

Published May 25, 2018

Cross-Site Scripting (XSS) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows authenticated users to allow arbitrary HTML code…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-3971

Published Apr 4, 2018

Cryptanalysis vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to view confidential information via insecure use o…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3969

Published Apr 4, 2018

Abuse of communication channels vulnerability in the server in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows man-in-the-middle attackers to decrypt messages vi…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3967

Published Apr 4, 2018

Target influence via framing vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to inject arbitrary web scrip…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3966

Published Apr 4, 2018

Exploitation of session variables, resource IDs and other trusted credentials vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allo…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3965

Published Apr 4, 2018

Cross-Site Request Forgery (CSRF) (aka Session Riding) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3964

Published Apr 4, 2018

Reflective Cross-Site Scripting (XSS) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to inject arbitrary web scr…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-3972

Published Apr 3, 2018

Infrastructure-based foot printing vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to execute arbitrary code via…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2014-2390

Published Aug 29, 2014

Cross-site request forgery (CSRF) vulnerability in the User Management module in McAfee Network Security Manager (NSM) before 6.1.15.39 7.1.5.x before 7.1.5.15, 7.1.15.x before 7.…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-19 of 19 CVEsPage 1 of 1