CVE-2022-0815: McAfee WebAdvisor - Extension Fingerprinting vulnerability
Improper access control vulnerability in McAfee WebAdvisor Chrome and Edge browser extensions up to 8.1.0.1895 allows a remote attacker to gain access to McAfee WebAdvisor settings and other details about the user’s system. This could lead to unexpected behaviors including; settings being changed, fingerprinting of the system leading to targeted scams, and not triggering the malicious software if McAfee software is detected.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-0815?
CVE-2022-0815 is an improper access control vulnerability in McAfee WebAdvisor Chrome and Edge browser extensions up to 8.1.0.1895.
What is the severity of CVE-2022-0815?
The severity of CVE-2022-0815 is high with a CVSS score of 7.3.
How does CVE-2022-0815 affect McAfee WebAdvisor?
CVE-2022-0815 allows a remote attacker to gain access to McAfee WebAdvisor settings and other details about the user’s system.
What could happen if I am affected by CVE-2022-0815?
If affected by CVE-2022-0815, unexpected behaviors can occur including settings being changed.
How can I fix CVE-2022-0815?
To fix CVE-2022-0815, update your McAfee WebAdvisor Chrome and Edge browser extensions to version 8.1.0.1896 or later.