PT-2012-2078 · Mcafee · Mcafee Firewall Reporter

Published

2012-08-22

·

Updated

2012-08-22

·

CVE-2011-5100

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions McAfee Firewall Reporter versions prior to 5.1.0.13
Description The issue concerns the web interface of the software, which does not properly implement cookie authentication. This allows remote attackers to obtain access and disable anti-virus functionality via an HTTP request.
Recommendations For versions prior to 5.1.0.13, update to version 5.1.0.13 or later to resolve the issue.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-5100

Affected Products

Mcafee Firewall Reporter