CVE-2014-9921: Critical severity mcafee cloud analysis and deconstructive services vulnerability
Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1.0.0.3x, 1.0.0.4d and earlier allows remote unauthenticated users to view, add, and remove users via a configuration error.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9921?
CVE-2014-9921 is classified as a medium severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2014-9921?
To fix CVE-2014-9921, upgrade McAfee Cloud Analysis and Deconstructive Services to version 1.0.0.5 or later.
Who is affected by CVE-2014-9921?
Users of McAfee Cloud Analysis and Deconstructive Services versions 1.0.0.3 and 1.0.0.4d and earlier are affected by CVE-2014-9921.
What type of vulnerability is CVE-2014-9921?
CVE-2014-9921 is an information disclosure vulnerability that allows unauthorized access to user management functionality.
Can CVE-2014-9921 be exploited remotely?
Yes, CVE-2014-9921 can be exploited remotely by unauthenticated users.