First published: Mon Jul 23 2018(Updated: )
Directory Traversal vulnerability in the administrative user interface in McAfee Web Gateway (MWG) MWG 7.8.1.x allows authenticated administrator users to gain elevated privileges via unspecified vectors.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Web Gateway | =7.8.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6677 is classified as a high severity vulnerability due to its potential for exploitation by authenticated administrator users.
To fix CVE-2018-6677, update to a patched version of McAfee Web Gateway that addresses this directory traversal vulnerability.
CVE-2018-6677 affects users of McAfee Web Gateway version 7.8.1.0 who have administrative access.
The risks of CVE-2018-6677 include elevated privileges for attackers, potentially leading to unauthorized access to sensitive data.
A temporary workaround for CVE-2018-6677 is to restrict administrative access and monitor user activity until a patch is applied.