CVE-2019-3619

Information Disclosure vulnerability in the Agent Handler in McAfee ePolicy Orchestrator (ePO) 5.9.x and 5.10.0 prior to 5.10.0 update 4 allows remote unauthenticated attacker to view sensitive information in plain text via sniffing the traffic between the Agent Handler and the SQL server.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.1:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_1:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_2:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_3:*:*:*:*:*:*

History

07 Nov 2023, 03:10

Type Values Removed Values Added
References (CONFIRM) https://kc.mcafee.com/corporate/index?page=content&id=SB10286 - Mitigation, Vendor Advisory () https://kc.mcafee.com/corporate/index?page=content&id=SB10286 -
References (BID) http://www.securityfocus.com/bid/109066 - () http://www.securityfocus.com/bid/109066 -

Information

Published : 2019-07-03 14:15

Updated : 2024-02-28 17:08


NVD link : CVE-2019-3619

Mitre link : CVE-2019-3619

CVE.ORG link : CVE-2019-3619


JSON object : View

Products Affected

mcafee

  • epolicy_orchestrator
CWE
CWE-319

Cleartext Transmission of Sensitive Information