PT-2017-16185 · Mcafee · Mcafee Advanced Threat Defense
Published
2017-07-12
·
Updated
2019-10-03
·
CVE-2017-4057
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
McAfee Advanced Threat Defense (ATD) versions 3.4 through 3.10
Description
A privilege escalation issue exists in the web interface of McAfee Advanced Threat Defense (ATD), allowing remote authenticated users to gain elevated privileges. This can be achieved via the GUI or by executing specific terminal commands through the GUI.
Recommendations
For versions 3.4 through 3.10, update to a version that includes a fix for this issue, as no specific workaround is provided for these versions.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mcafee Advanced Threat Defense