Files
CVEs-PoC/2017/CVE-2017-3962.md
T
2025-09-29 21:09:30 +02:00

18 lines
793 B
Markdown

### [CVE-2017-3962](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3962)
![](https://img.shields.io/static/v1?label=Product&message=Network%20Security%20Management%20(NSM)&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=8%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Password%20recovery%20exploitation%20vulnerability%0A&color=brightgreen)
### Description
Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.
### POC
#### Reference
- https://kc.mcafee.com/corporate/index?page=content&id=SB10192
#### Github
No PoCs found on GitHub currently.