First published: Thu Aug 13 2020(Updated: )
Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the ADRMS username and password via unprotected log files containing plain text
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Data Loss Prevention | >=11.3.0<11.3.31 | |
Mcafee Data Loss Prevention | >=11.4.0<11.4.200 | |
Mcafee Data Loss Prevention | >=11.5.0<11.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-7306.
The severity level of CVE-2020-7306 is medium (5.2).
CVE-2020-7306 is an Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 that allows local users to gain access to the ADRMS username and password via unprotected log files containing plain text.
McAfee Data Loss Prevention (DLP) for Mac versions 11.3.0 to 11.3.31, 11.4.0 to 11.4.200, and 11.5.0 to 11.5.2 are affected by CVE-2020-7306.
To fix the vulnerability CVE-2020-7306, update McAfee Data Loss Prevention (DLP) for Mac to version 11.5.2 or later.