Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mcafee network data loss prevention 9.2.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-8521
Cross-site scripting (XSS) vulnerability in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8523
Cross-site request forgery (CSRF) vulnerability in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8524
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not disable the autocomplete setting for the password and other fields, which allows remote malicious users to obtain sensitive information via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8525
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote malicious users to obtain potentially sensitive information via script access to this cookie.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8526
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows local users to obtain sensitive information by reading a Java stack trace.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8527
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows local users to obtain sensitive information and affect integrity via vectors related to a "plain text password."
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8528
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 logs session IDs, which allows local users to obtain sensitive information by reading the audit log.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8529
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 stores the SSH key in cleartext, which allows local users to obtain sensitive information via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8530
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to obtain sensitive information, affect integrity, or cause a denial of service via unknown vectors, related to simultaneous logins.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
NA
CVE-2014-8531
The TLS/SSL Server in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 uses weak cipher algorithms, which makes it easier for remote authenticated users to execute arbitrary code via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30078
CVE-2024-37896
code injection
CVE-2024-3080
CVE-2024-5172
cross-site request forgery
CVE-2024-6111
firmware
CVE-2024-38504
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »