PT-2019-2071 · Mcafee · Mcafee Tie Server+1

CVE-2019-3612

·

Publicado

2019-04-09

·

Atualizado

2023-02-03

CVSS v3.1

8.2

Alta

VetorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions McAfee DXL Platform versions prior to 5.0.1 HF2 McAfee TIE Server versions prior to 2.3.1 HF1
Description The issue is related to a lack of protection for service data, which can be exploited to gain read access to confidential information in plain text. This can be achieved through the graphical interface or command line. Authenticated users can view sensitive information.
Recommendations For McAfee DXL Platform versions prior to 5.0.1 HF2, update to version 5.0.1 HF2 or later. For McAfee TIE Server versions prior to 2.3.1 HF1, update to version 2.3.1 HF1 or later.

Correção

Cleartext Storage of Sensitive Information

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2019-01817
CVE-2019-3612

Produtos afetados

Mcafee Dxl Platform
Mcafee Tie Server