PT-2020-19530 · Mcafee · Mcafee Web Gateway

Published

2020-09-15

·

Updated

2022-01-06

·

CVE-2020-7293

CVSS v3.1

9.0

Critical

VectorAV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions McAfee Web Gateway versions prior to 9.2.1
Description The issue allows an authenticated user interface user with low permissions to escalate their privileges by changing the system's root password due to improper access controls in the user interface.
Recommendations For versions prior to 9.2.1, update to version 9.2.1 or later to resolve the issue.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-7293

Affected Products

Mcafee Web Gateway