CVE-2019-3651

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
13/11/2019
Last modified:
07/11/2023

Description

Information Disclosure vulnerability in McAfee Advanced Threat Defense (ATD prior to 4.8 allows remote authenticated attackers to gain access to ePO as an administrator via using the atduser credentials, which were too permissive.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:advanced_threat_defense:*:*:*:*:*:*:*:* 4.8 (excluding)


References to Advisories, Solutions, and Tools