CVE-2017-4015: McAfee Network Data Loss Prevention
Medium severity, CVSS 4.5. EPSS: 1.2% chance of exploitation in the next 30 days.
Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header.
Affected products
- McAfee Network Data Loss Prevention: up to and including 9.3.0
Published 2017-05-17. Last modified 2026-06-17.