PT-2019-16635 · Mcafee · Mcafee Network Security Management
Publicado
2019-03-26
·
Atualizado
2020-08-24
·
CVE-2019-3606
CVSS v3.1
7.7
Alta
| Vetor | AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
McAfee Network Security Management (NSM) versions 9.1 through 9.1.7.75 (Update 4)
McAfee Network Security Management (NSM) versions 9.2 through 9.2.7.31 Update2
Description
The issue allows administrators to view configuration information in plain text format via the GUI or GUI terminal commands, potentially leading to data leakage attacks.
Recommendations
For versions 9.1 through 9.1.7.75 (Update 4), update to version 9.1.7.75 (Update 4) or later.
For versions 9.2 through 9.2.7.31 Update2, update to version 9.2.7.31 Update2 or later.
Correção
Cleartext Storage of Sensitive Information
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Mcafee Network Security Management