PT-2019-16633 · Mcafee · Mcafee Network Security Management
Published
2019-03-26
·
Updated
2020-08-24
·
CVE-2019-3597
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
McAfee Network Security Manager (NSM) versions 9.1 through 9.1.7.75.1
McAfee Network Security Manager (NSM) versions 9.2 through 9.2.7.30
Description
The issue allows unauthenticated users to gain administrator rights due to incorrect handling of expired GUI sessions.
Recommendations
For versions 9.1 through 9.1.7.75.1, update to version 9.1.7.75.2 or later.
For versions 9.2 through 9.2.7.30, update to 9.2 Update 2 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mcafee Network Security Management