Vulnerability Description
SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2.0.x, 2.1.x, 2.2.0 allows man-in-the-middle attackers to spoof servers via acquiring keys from another environment.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Threat Intelligence Exchange Server | >= 2.0.0, <= 2.0.1 |
References
- https://kc.mcafee.com/corporate/index?page=content&id=SB10253
- https://kc.mcafee.com/corporate/index?page=content&id=SB10253
FAQ
What is CVE-2018-6695?
CVE-2018-6695 is a vulnerability with a CVSS score of 5.9 (MEDIUM). SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2.0.x, 2.1.x, 2.2.0 allows man-in-the-middle attackers to spoof servers via acqui...
How severe is CVE-2018-6695?
CVE-2018-6695 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-6695?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Threat Intelligence Exchange Server.