About.aspx in the Portal in McAfee Enterprise Mobility Manager (EMM) before 10.0 discloses the name of the user account for an IIS worker process, which allows remote attackers to obtain potentially sensitive information by visiting this page.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10022 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/78221 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-08-22 03:42
Updated : 2017-08-28 18:32
NVD link : CVE-2012-4591
Mitre link : CVE-2012-4591
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
mcafee
- enterprise_mobility_manager