Vulnerability Description
Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Update 2) allows unauthenticated users to gain administrator rights via incorrect handling of expired GUI sessions.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Network Security Manager | >= 9.1, < 9.1.7.75 |
References
- http://www.securityfocus.com/bid/107609
- https://kc.mcafee.com/corporate/index?page=content&id=SB10275
- http://www.securityfocus.com/bid/107609
- https://kc.mcafee.com/corporate/index?page=content&id=SB10275
FAQ
What is CVE-2019-3597?
CVE-2019-3597 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Update 2) allows unauthenticated users to gain administrator rights via incorrect ...
How severe is CVE-2019-3597?
CVE-2019-3597 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-3597?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Network Security Manager.