CVE-2017-3966: McAfee Network Security Manager
Medium severity, CVSS 6.3. EPSS: 0.7% chance of exploitation in the next 30 days.
Exploitation of session variables, resource IDs and other trusted credentials vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to exploit or harm a user's browser via reusing the exposed session token in the application URL.
Affected products
- McAfee Network Security Manager: before 8.2.7.42.2 (fixed in 8.2.7.42.2)
Published 2018-04-04. Last modified 2026-06-17.