CVE-2017-3897
01.09.2017, 13:29
A Code Injection vulnerability in the non-certificate-based authentication mechanism in McAfee Live Safe versions prior to 16.0.3 and McAfee Security Scan Plus (MSS+) versions prior to 3.11.599.3 allows network attackers to perform a malicious file execution via a HTTP backend-response.
Vendor | Product | Version |
---|---|---|
mcafee | livesafe | 𝑥 ≤ 16.0.2 |
mcafee | security_scan_plus | 𝑥 ≤ 3.11.599.2 |
𝑥
= Vulnerable software versions