A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows a remote or local user to execute blacklisted files through an ASP.NET form.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10261 | Vendor Advisory |
http://www.securityfocus.com/bid/106282 | Third Party Advisory |
Configurations
Information
Published : 2018-12-20 05:29
Updated : 2019-10-09 16:41
NVD link : CVE-2018-6669
Mitre link : CVE-2018-6669
JSON object : View
CWE
CWE-425
Direct Request ('Forced Browsing')
Products Affected
mcafee
- application_change_control