CVE-2018-6678 LOW

CVE-2018-6678: McAfee Web Gateway (MWG) - Configuration/Environment manipulation vulnerability

Vendor Mcafee
Product McAfee Web Gateway (MWG)
Published July 23, 2018
Last update August 5, 2024

CVSS base score

3.4/10
Attack vector Network
Attack complexity Low
Privileges required High
User interaction Required
Confidentiality None
Integrity None

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:N/I:N/A:L

What the vulnerability does

01Description

Configuration/Environment manipulation vulnerability in the administrative interface in McAfee Web Gateway (MWG) MWG 7.8.1.x allows authenticated administrator users to execute arbitrary commands via unspecified vectors.

Key dates

02Disclosure timeline

July 23, 2018 CVE published
August 5, 2024 Record updated