First published: Tue Sep 15 2020(Updated: )
Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to access protected dashboard data via improper access control in the user interface.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Web Gateway | >=7.8.0<7.8.2.22 | |
McAfee Web Gateway | >=8.2.0<8.2.9 | |
McAfee Web Gateway | >=9.0.0<9.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7297 is a Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1.
CVE-2020-7297 allows authenticated user interface users to access protected dashboard data via improper access control in the user interface.
CVE-2020-7297 affects McAfee Web Gateway versions prior to 9.2.1.
CVE-2020-7297 has a severity rating of 5.7 (medium).
To fix CVE-2020-7297, it is recommended to update McAfee Web Gateway to version 9.2.1 or later.