First published: Mon Feb 24 2020(Updated: )
Remote Code Execution vulnerability in the web interface in McAfee Web Advisor (WA) 8.0.34745 and earlier allows remote unauthenticated attacker to execute arbitrary code via a cross site scripting attack.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Web Advisor | <=8.0.34745 | |
Mcafee Web Advisor | <=8.0.0.34239 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3670 is a Remote Code Execution vulnerability in the web interface of McAfee Web Advisor (WA) 8.0.34745 and earlier.
CVE-2019-3670 has a severity rating of 6.1 (high).
The affected software for CVE-2019-3670 is McAfee Web Advisor versions 8.0.34745 and earlier for Chrome and Firefox.
An attacker can exploit CVE-2019-3670 by executing arbitrary code via a cross-site scripting attack on the web interface of McAfee Web Advisor.
Yes, a fix for CVE-2019-3670 is available. Please refer to the reference link for more information.