Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gw82-2395-v94j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard.

McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard.

EPSS

Процентиль: 37%
0.00162
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 13 лет назад

McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard.

EPSS

Процентиль: 37%
0.00162
Низкий

Дефекты

CWE-200