Files
CVEs-PoC/2017/CVE-2017-3961.md
T
2025-09-29 21:09:30 +02:00

18 lines
831 B
Markdown

### [CVE-2017-3961](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3961)
![](https://img.shields.io/static/v1?label=Product&message=Network%20Security%20Management%20(NSM)&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=8.2.7.42.2%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Cross-Site%20Scripting%20(XSS)%20vulnerability&color=brightgreen)
### Description
Cross-Site Scripting (XSS) vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows authenticated users to allow arbitrary HTML code to be reflected in the response web page via crafted user input of attributes.
### POC
#### Reference
- https://kc.mcafee.com/corporate/index?page=content&id=SB10192
#### Github
No PoCs found on GitHub currently.