PT-2012-5493 · Mcafee · Mcafee Email/Web Security+1
Published
2012-08-22
·
Updated
2012-11-20
·
CVE-2012-4585
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
McAfee Email and Web Security (EWS) versions 5.x through 5.5 before Patch 6
McAfee Email and Web Security (EWS) version 5.6 before Patch 3
McAfee Email Gateway (MEG) versions 7.0 before Patch 1
Description
The issue allows remote authenticated users to read arbitrary files via a crafted URL.
Recommendations
For McAfee Email and Web Security (EWS) versions 5.x through 5.5, apply Patch 6 to resolve the issue.
For McAfee Email and Web Security (EWS) version 5.6, apply Patch 3 to resolve the issue.
For McAfee Email Gateway (MEG) version 7.0, apply Patch 1 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mcafee Email Gateway
Mcafee Email/Web Security