CVE-2018-6667

Severity
9.8CRITICAL
EPSS
2.2%
top 15.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 26
Latest updateMay 13

Description

Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 7.8.1.0 through 7.8.1.5 allows remote attackers to execute arbitrary code via Java management extensions (JMX).

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HExploitability: 3.9 | Impact: 6.0

Affected Packages2 packages

CVEListV5mcafee/web_gateway7.8.1.0unspecified+1
NVDmcafee/mcafee_web_gateway7.8.1.07.8.1.5

🔴Vulnerability Details

2
GHSA
GHSA-qhv2-x36h-3gcf: Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 72022-05-13
CVEList
McAfee Web Gateway - Authentication Bypass vulnerability2018-06-26