CVE-2019-3619

Information Disclosure vulnerability in the Agent Handler in McAfee ePolicy Orchestrator (ePO) 5.9.x and 5.10.0 prior to 5.10.0 update 4 allows remote unauthenticated attacker to view sensitive information in plain text via sniffing the traffic between the Agent Handler and the SQL server.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.1:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_1:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_2:*:*:*:*:*:*
cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_3:*:*:*:*:*:*

History

21 Nov 2024, 04:42

Type Values Removed Values Added
CVSS v2 : 4.0
v3 : 4.9
v2 : 4.0
v3 : 6.8
References () http://www.securityfocus.com/bid/109066 - () http://www.securityfocus.com/bid/109066 -
References () https://kc.mcafee.com/corporate/index?page=content&id=SB10286 - () https://kc.mcafee.com/corporate/index?page=content&id=SB10286 -

07 Nov 2023, 03:10

Type Values Removed Values Added
References (CONFIRM) https://kc.mcafee.com/corporate/index?page=content&id=SB10286 - Mitigation, Vendor Advisory () https://kc.mcafee.com/corporate/index?page=content&id=SB10286 -
References (BID) http://www.securityfocus.com/bid/109066 - () http://www.securityfocus.com/bid/109066 -

Information

Published : 2019-07-03 14:15

Updated : 2024-11-21 04:42


NVD link : CVE-2019-3619

Mitre link : CVE-2019-3619

CVE.ORG link : CVE-2019-3619


JSON object : View

Products Affected

mcafee

  • epolicy_orchestrator
CWE
CWE-319

Cleartext Transmission of Sensitive Information