CVE-2019-3641 MEDIUM

CVE-2019-3641: Exploitation of Authorization in TIE Server

Vendor Mcafee,Llc
Product Threat Intelligence Exchange Server (TIE Server)
Weakness CWE-285
Published November 13, 2019
Last update August 4, 2024

CVSS base score

4.5/10
Attack vector Network
Attack complexity Low
Privileges required High
User interaction Required
Confidentiality None
Integrity High

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N

What the vulnerability does

01Description

Abuse of Authorization vulnerability in APIs exposed by TIE server in McAfee Threat Intelligence Exchange Server (TIE Server) 3.0.0 allows remote authenticated users to modify stored reputation data via specially crafted messages.

Key dates

02Disclosure timeline

November 13, 2019 CVE published
August 4, 2024 Record updated