Vulnerability Description
Cross Site Request Forgery vulnerability in McAfee Network Security Management (NSM) prior to 10.1.7.35 and NSM 9.x prior to 9.2.9.55 may allow an attacker to change the configuration of the Network Security Manager via a carefully crafted HTTP request.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Network Security Management | >= 9.0, < 9.2.9.55 |
Related Weaknesses (CWE)
References
- https://kc.mcafee.com/corporate/index?page=content&id=SB10341Broken Link
- https://kc.mcafee.com/corporate/index?page=content&id=SB10341Broken Link
FAQ
What is CVE-2020-7336?
CVE-2020-7336 is a vulnerability with a CVSS score of 6.6 (MEDIUM). Cross Site Request Forgery vulnerability in McAfee Network Security Management (NSM) prior to 10.1.7.35 and NSM 9.x prior to 9.2.9.55 may allow an attacker to change the configuration of the Network S...
How severe is CVE-2020-7336?
CVE-2020-7336 has been rated MEDIUM with a CVSS base score of 6.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7336?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Network Security Management.