Code Injection vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthenticated attacker to allow the browser to render a website which Web Advisor would normally have blocked via a carefully crafted web site.
References
Link | Resource |
---|---|
http://service.mcafee.com/FAQDocument.aspx?&id=TS102991 | Vendor Advisory |
Configurations
Information
Published : 2019-12-03 03:15
Updated : 2019-12-11 13:20
NVD link : CVE-2019-3665
Mitre link : CVE-2019-3665
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
mcafee
- webadvisor