3.5

CVE-2012-4586

McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, accesses files with the privileges of the root user, which allows remote authenticated users to bypass intended permission settings by requesting a file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mcafee ≫ Email And Web Security Version 5.0
Mcafee ≫ Email And Web Security Version 5.5
Mcafee ≫ Email And Web Security Version 5.6
Mcafee ≫ Email Gateway Version 7.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.92% 0.554
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://kc.mcafee.com/corporate/index?page=content&id=SB10020
Vendor Advisory