Improper Access Control in McAfee Email and Web Security and Gateway
CVE-2012-4586

Currently unrated

Key Information:

Vendor

Mcafee

Vendor
CVE Published:
22 August 2012

What is CVE-2012-4586?

An improper access control vulnerability exists in McAfee Email and Web Security versions prior to 5.5 Patch 6 and 5.6 before Patch 3, as well as in McAfee Email Gateway 7.0 before Patch 1. This issue allows remote authenticated users to access files with root user privileges, potentially bypassing intended permission settings. Exploiting this vulnerability can lead to unauthorized access to sensitive files, posing a significant risk to the confidentiality and integrity of the affected systems.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.