The Web Post Protection feature in McAfee Host Data Loss Prevention (DLP) 3.x before 3.0.100.10 and 9.x before 9.0.0.422, when HTTP Capture mode is enabled, allows local users to obtain sensitive information from web traffic by reading unspecified files.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10011 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/78447 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-08-22 03:42
Updated : 2017-08-28 18:29
NVD link : CVE-2009-5117
Mitre link : CVE-2009-5117
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
mcafee
- host_data_loss_prevention