PT-2019-16635 · Mcafee · Mcafee Network Security Management

Published

2019-03-26

·

Updated

2020-08-24

·

CVE-2019-3606

CVSS v3.1

7.7

High

VectorAV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions McAfee Network Security Management (NSM) versions 9.1 through 9.1.7.75 (Update 4) McAfee Network Security Management (NSM) versions 9.2 through 9.2.7.31 Update2
Description The issue allows administrators to view configuration information in plain text format via the GUI or GUI terminal commands, potentially leading to data leakage attacks.
Recommendations For versions 9.1 through 9.1.7.75 (Update 4), update to version 9.1.7.75 (Update 4) or later. For versions 9.2 through 9.2.7.31 Update2, update to version 9.2.7.31 Update2 or later.

Fix

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-3606

Affected Products

Mcafee Network Security Management