Vulnerability Details CVE-2017-4052
Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to change or update any configuration settings, or gain administrator functionality via a crafted HTTP request parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2017-4052
-
cpe:2.3:a:mcafee:advanced_threat_defense:3.10
-
cpe:2.3:a:mcafee:advanced_threat_defense:3.4
-
cpe:2.3:a:mcafee:advanced_threat_defense:3.6
-
cpe:2.3:a:mcafee:advanced_threat_defense:3.8