About.aspx in the Portal in McAfee Enterprise Mobility Manager (EMM) before 10.0 discloses the name of the user account for an IIS worker process, which allows remote attackers to obtain potentially sensitive information by visiting this page.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/78221 | |
https://kc.mcafee.com/corporate/index?page=content&id=SB10022 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2012-08-22 10:42
Updated : 2024-02-04 18:16
NVD link : CVE-2012-4591
Mitre link : CVE-2012-4591
CVE.ORG link : CVE-2012-4591
JSON object : View
Products Affected
mcafee
- enterprise_mobility_manager
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor