Back to overview

CVE-2018-6667

CRITICAL
10.0
CVSS 3.0
Description
Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 7.8.1.0 through 7.8.1.5 allows remote attackers to execute arbitrary code via Java management extensions (JMX).

Metadata

CVE ID
CVE-2018-6667
State
PUBLISHED
Assigner
trellix
Reserved
2018-02-06 00:00 UTC
Published
2018-06-26 17:00 UTC
Last updated
2024-08-05 06:10 UTC
Vendor / Product
McAfee / Web Gateway
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 CRITICAL CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected products (1)
VendorProductPlatformVersions
McAfee Web Gateway x86 7.8.1.0 < unspecified, unspecified ≤ 7.8.1.5
Weakness (CWE)
CWESourceDescription
cna Authentication Bypass vulnerability
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 CRITICAL 3.0 cna CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Back to overview