Authentication Bypass vulnerability in the Microsoft Windows client in McAfee Client Proxy (MCP) prior to 3.0.0 allows local user to bypass scanning of web traffic and gain access to blocked sites for a short period of time via generating an authorization key on the client which should only be generated by the network administrator.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10305 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-11-22 12:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-3654
Mitre link : CVE-2019-3654
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
mcafee
- client_proxy
microsoft
- windows