CVE-2021-23885

Privilege escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.8 allows an authenticated user to gain elevated privileges through the User Interface and execute commands on the appliance via incorrect improper neutralization of user input in the troubleshooting page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:52

Type Values Removed Values Added
CVSS v2 : 9.0
v3 : 8.8
v2 : 9.0
v3 : 9.0
References () https://kc.mcafee.com/corporate/index?page=content&id=SB10349 - () https://kc.mcafee.com/corporate/index?page=content&id=SB10349 -

26 Apr 2022, 15:59

Type Values Removed Values Added
CWE CWE-269 NVD-CWE-Other

Information

Published : 2021-02-17 10:15

Updated : 2024-11-21 05:52


NVD link : CVE-2021-23885

Mitre link : CVE-2021-23885

CVE.ORG link : CVE-2021-23885


JSON object : View

Products Affected

mcafee

  • web_gateway
CWE
CWE-269

Improper Privilege Management

NVD-CWE-Other