VYPR
High severity7.5NVD Advisory· Published Jul 12, 2017· Updated May 13, 2026

CVE-2017-4055

CVE-2017-4055

Description

Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to bypass ATD detection via loose enforcement of authentication and authorization.

Affected products

5
  • cpe:2.3:a:mcafee:advanced_threat_defense:3.10:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:mcafee:advanced_threat_defense:3.10:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:advanced_threat_defense:3.4:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:advanced_threat_defense:3.6:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:advanced_threat_defense:3.8:*:*:*:*:*:*:*
  • McAfee/Advanced Threat Defense (ATD)v5
    Range: 3.10

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.