← Zuruck zu CVEs
CVE-2019-3660
HIGH8.4
Beschreibung
Improper Neutralization of HTTP requests in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticated attacker to execute commands on the server remotely via carefully constructed HTTP requests.
CVE Details
CVSS v3.1 Bewertung8.4
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:H
AngriffsvektorNETWORK
KomplexitatHIGH
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht11/13/2019
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
mcafee:advanced_threat_defense
Referenzen
https://kc.mcafee.com/corporate/index?page=content&id=SB10304(trellixpsirt@trellix.com)
https://kc.mcafee.com/corporate/index?page=content&id=SB10304(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.