CVE-2017-3898
EUVD-2017-1301501.09.2017, 13:29
A man-in-the-middle attack vulnerability in the non-certificate-based authentication mechanism in McAfee LiveSafe (MLS) versions prior to 16.0.3 allows network attackers to modify the Windows registry value associated with the McAfee update via the HTTP backend-response.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mcafee | livesafe | 𝑥 ≤ 16.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration