CVE-2014-8537: Infoleak
Published Oct 29, 2014
·Updated
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to obtain sensitive information by reading the logs.
Affected Software
3 affected components
Mcafee Network Data Loss Prevention<=9.2.1
Mcafee Network Data Loss Prevention=8.6
Mcafee Network Data Loss Prevention=9.2.0
Event History
Oct 29, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8537?
CVE-2014-8537 is considered a medium-severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2014-8537?
To fix CVE-2014-8537, upgrade McAfee Network Data Loss Prevention to version 9.2.2 or higher.
3
Who is affected by CVE-2014-8537?
CVE-2014-8537 affects local users of McAfee Network Data Loss Prevention versions prior to 9.2.2.
4
What type of information can be exposed by CVE-2014-8537?
CVE-2014-8537 may allow local users to read sensitive information from the logs.
5
Is there a workaround for CVE-2014-8537?
There are no known workarounds for CVE-2014-8537; upgrading is the recommended solution.