First published: Fri Jul 03 2020(Updated: )
Exposure of Sensitive Information in McAfee Network Security Management (NSM) prior to 10.1.7.7 allows local users to gain unauthorised access to the root account via execution of carefully crafted commands from the restricted command line interface (CLI).
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Network Security Management | >=9.0<9.2.9.55 | |
McAfee Network Security Management | >=10.0<10.1.7.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-7284.
The title of this vulnerability is 'Exposure of Sensitive Information in McAfee Network Security Management (NSM) prior to 10.1.7.7.'
The severity of CVE-2020-7284 is rated as high with a severity value of 7.8.
CVE-2020-7284 allows local users to gain unauthorized access to the root account via execution of carefully crafted commands from the restricted command line interface (CLI).
To fix this vulnerability, update McAfee Network Security Management to version 10.1.7.7 or higher.