CVE-2017-4011
- EPSS 10.89%
- Published 17.05.2017 21:29:00
- Last modified 20.04.2025 01:37:25
Embedding Script (XSS) in HTTP Headers vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to get session/cookie information via modification of the HTTP request.
CVE-2014-8533
- EPSS 3.01%
- Published 29.10.2014 14:55:05
- Last modified 12.04.2025 10:46:40
McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote attackers to execute arbitrary code via vectors related to ICMP redirection.
CVE-2014-8537
- EPSS 0.06%
- Published 29.10.2014 14:55:05
- Last modified 12.04.2025 10:46:40
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to obtain sensitive information by reading the logs.
CVE-2014-8536
- EPSS 0.06%
- Published 29.10.2014 14:55:05
- Last modified 12.04.2025 10:46:40
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to obtain sensitive information by reading unspecified error messages.
CVE-2014-8535
- EPSS 0.05%
- Published 29.10.2014 14:55:05
- Last modified 12.04.2025 10:46:40
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to bypass intended restriction on unspecified functionality via unknown vectors.
CVE-2014-8534
- EPSS 0.05%
- Published 29.10.2014 14:55:05
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in the login form in McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to cause a denial of service via a crafted value in the domain field.
CVE-2014-8532
- EPSS 0.13%
- Published 29.10.2014 14:55:04
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in McAfee Network Data Loss Prevention before (NDLP) before 9.3 allows local users to obtain sensitive information and impact integrity via unknown vectors, related to partition mounting.
CVE-2014-8531
- EPSS 4.26%
- Published 29.10.2014 14:55:04
- Last modified 12.04.2025 10:46:40
The TLS/SSL Server in McAfee Network Data Loss Prevention (NDLP) before 9.3 uses weak cipher algorithms, which makes it easier for remote authenticated users to execute arbitrary code via unspecified vectors.
CVE-2014-8530
- EPSS 0.62%
- Published 29.10.2014 14:55:04
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote attackers to obtain sensitive information, affect integrity, or cause a denial of service via unknown vectors, related to simultaneous logins.
CVE-2014-8529
- EPSS 0.13%
- Published 29.10.2014 14:55:04
- Last modified 12.04.2025 10:46:40
McAfee Network Data Loss Prevention (NDLP) before 9.3 stores the SSH key in cleartext, which allows local users to obtain sensitive information via unspecified vectors.