CVE-2018-6667

Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 7.8.1.0 through 7.8.1.5 allows remote attackers to execute arbitrary code via Java management extensions (JMX).
Configurations

Configuration 1 (hide)

cpe:2.3:a:mcafee:mcafee_web_gateway:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:11

Type Values Removed Values Added
CVSS v2 : 7.5
v3 : 9.8
v2 : 7.5
v3 : 10.0
References () http://www.securityfocus.com/bid/104564 - () http://www.securityfocus.com/bid/104564 -
References () http://www.securitytracker.com/id/1041129 - () http://www.securitytracker.com/id/1041129 -
References () https://kc.mcafee.com/corporate/index?page=content&id=SB10241 - () https://kc.mcafee.com/corporate/index?page=content&id=SB10241 -

07 Nov 2023, 03:00

Type Values Removed Values Added
References (SECTRACK) http://www.securitytracker.com/id/1041129 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1041129 -
References (BID) http://www.securityfocus.com/bid/104564 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/104564 -
References (CONFIRM) https://kc.mcafee.com/corporate/index?page=content&id=SB10241 - Vendor Advisory () https://kc.mcafee.com/corporate/index?page=content&id=SB10241 -

Information

Published : 2018-06-26 17:29

Updated : 2024-11-21 04:11


NVD link : CVE-2018-6667

Mitre link : CVE-2018-6667

CVE.ORG link : CVE-2018-6667


JSON object : View

Products Affected

mcafee

  • mcafee_web_gateway
CWE
CWE-287

Improper Authentication