Data Leakage Vulnerability in McAfee Database Security web interface
CVE-2019-3615

5.3MEDIUM

Key Information:

Vendor
CVE Published:
12 March 2019

What is CVE-2019-3615?

Data Leakage Attacks vulnerability in the web interface in McAfee Database Security prior to the 4.6.6 March 2019 update allows local users to expose passwords via incorrectly auto completing password fields in the admin browser login screen.

Affected Version(s)

McAfee Database Security (DAM) < 4.6.6 March 2019 Update

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.