PT-2019-16635 · Mcafee · Mcafee Network Security Management
Published
2019-03-26
·
Updated
2020-08-24
·
CVE-2019-3606
CVSS v3.1
7.7
High
| Vector | AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
McAfee Network Security Management (NSM) versions 9.1 through 9.1.7.75 (Update 4)
McAfee Network Security Management (NSM) versions 9.2 through 9.2.7.31 Update2
Description
The issue allows administrators to view configuration information in plain text format via the GUI or GUI terminal commands, potentially leading to data leakage attacks.
Recommendations
For versions 9.1 through 9.1.7.75 (Update 4), update to version 9.1.7.75 (Update 4) or later.
For versions 9.2 through 9.2.7.31 Update2, update to version 9.2.7.31 Update2 or later.
Fix
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mcafee Network Security Management