Vulnerability Description
Cross-site scripting (XSS) vulnerability in the Secure Web Mail Client user interface in McAfee Email Gateway (MEG) 7.6.x before 7.6.3.2, 7.5.x before 75.6, 7.0.x through 7.0.5, 5.6, and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified tokens in Digest messages.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Email Gateway | <= 5.6 |
Related Weaknesses (CWE)
References
- https://kc.mcafee.com/corporate/index?page=content&id=SB10099Vendor Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10099Vendor Advisory
FAQ
What is CVE-2015-1619?
CVE-2015-1619 is a vulnerability with a CVSS score of 3.5 (LOW). Cross-site scripting (XSS) vulnerability in the Secure Web Mail Client user interface in McAfee Email Gateway (MEG) 7.6.x before 7.6.3.2, 7.5.x before 75.6, 7.0.x through 7.0.5, 5.6, and earlier allow...
How severe is CVE-2015-1619?
CVE-2015-1619 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-1619?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Email Gateway.