Vulnerability Description
Unprotected Storage of Credentials vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows local attacker to gain access to the root password via accessing sensitive files on the system. This was originally published with a CVSS rating of High, further investigation has resulted in this being updated to Critical. The root password is common across all instances of ATD prior to 4.8. See the Security bulletin for further details
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Advanced Threat Defense | < 4.8 |
Related Weaknesses (CWE)
References
- https://kc.mcafee.com/corporate/index?page=content&id=SB10304
- https://kc.mcafee.com/corporate/index?page=content&id=SB10304
FAQ
What is CVE-2019-3663?
CVE-2019-3663 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unprotected Storage of Credentials vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows local attacker to gain access to the root password via accessing sensitive files on the sys...
How severe is CVE-2019-3663?
CVE-2019-3663 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-3663?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Advanced Threat Defense.