Remote Code Execution vulnerability in the web interface in McAfee Web Advisor (WA) 8.0.34745 and earlier allows remote unauthenticated attacker to execute arbitrary code via a cross site scripting attack.
References
Link | Resource |
---|---|
https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS103008 | Patch Vendor Advisory |
Information
Published : 2020-02-24 02:15
Updated : 2020-02-25 10:46
NVD link : CVE-2019-3670
Mitre link : CVE-2019-3670
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
mcafee
- web_advisor