CVE-2014-8531

McAfee Network Data Loss Prevention < 9.3 - Authenticated Remote Code Execution via Weak TLS/SSL Cipher Algorithms

Title source: llm
STIX 2.1

Description

The TLS/SSL Server in McAfee Network Data Loss Prevention (NDLP) before 9.3 uses weak cipher algorithms, which makes it easier for remote authenticated users to execute arbitrary code via unspecified vectors.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/70831
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/98432

Scores

EPSS 0.0426
EPSS Percentile 88.9%

Details

CWE
CWE-310
Status published
Products (4)
mcafee/network_data_loss_prevention 8.6
mcafee/network_data_loss_prevention 9.2.0
mcafee/network_data_loss_prevention 9.2.1
mcafee/network_data_loss_prevention < 9.2.2
Published Oct 29, 2014
Tracked Since Feb 18, 2026