Описание
McAfee Network Data Loss Prevention (NDLP) before 9.3 does not disable the autocomplete setting for the password and other fields, which allows remote attackers to obtain sensitive information via unspecified vectors.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 9.2.2 (включая)
Одно из
cpe:2.3:a:mcafee:network_data_loss_prevention:*:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:network_data_loss_prevention:8.6:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:network_data_loss_prevention:9.2.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:network_data_loss_prevention:9.2.1:*:*:*:*:*:*:*
EPSS
Процентиль: 60%
0.00403
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
github
больше 3 лет назад
McAfee Network Data Loss Prevention (NDLP) before 9.3 does not disable the autocomplete setting for the password and other fields, which allows remote attackers to obtain sensitive information via unspecified vectors.
EPSS
Процентиль: 60%
0.00403
Низкий
5 Medium
CVSS2
Дефекты
CWE-200