PT-2019-2071 · Mcafee · Mcafee Tie Server+1
CVE-2019-3612
·
Publicado
2019-04-09
·
Atualizado
2023-02-03
CVSS v3.1
8.2
Alta
| Vetor | AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
McAfee DXL Platform versions prior to 5.0.1 HF2
McAfee TIE Server versions prior to 2.3.1 HF1
Description
The issue is related to a lack of protection for service data, which can be exploited to gain read access to confidential information in plain text. This can be achieved through the graphical interface or command line. Authenticated users can view sensitive information.
Recommendations
For McAfee DXL Platform versions prior to 5.0.1 HF2, update to version 5.0.1 HF2 or later.
For McAfee TIE Server versions prior to 2.3.1 HF1, update to version 2.3.1 HF1 or later.
Correção
Cleartext Storage of Sensitive Information
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Mcafee Dxl Platform
Mcafee Tie Server