CVE-2017-3960: McAfee Network Security Manager

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Exploitation of Authorization vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows authenticated users to gain elevated privileges via a crafted HTTP request parameter.

Affected products

  • McAfee Network Security Manager: before 8.2.7.42.2 (fixed in 8.2.7.42.2)

Published 2018-06-12. Last modified 2026-06-17.