Vulnerabilities > Mcafee > Mcafee WEB Gateway

DATE CVE VULNERABILITY TITLE RISK
2019-01-09 CVE-2019-3581 Improper Input Validation vulnerability in Mcafee web Gateway
Improper input validation in the proxy component of McAfee Web Gateway 7.8.2.0 and later allows remote attackers to cause a denial of service via a crafted HTTP request parameter.
network
low complexity
mcafee CWE-20
7.5
2018-07-23 CVE-2018-6678 Unspecified vulnerability in Mcafee web Gateway 7.8.1.0
Configuration/Environment manipulation vulnerability in the administrative interface in McAfee Web Gateway (MWG) MWG 7.8.1.x allows authenticated administrator users to execute arbitrary commands via unspecified vectors.
network
low complexity
mcafee
critical
9.1
2018-07-23 CVE-2018-6677 Path Traversal vulnerability in Mcafee web Gateway 7.8.1.0
Directory Traversal vulnerability in the administrative user interface in McAfee Web Gateway (MWG) MWG 7.8.1.x allows authenticated administrator users to gain elevated privileges via unspecified vectors.
network
low complexity
mcafee CWE-22
critical
9.1
2018-06-26 CVE-2018-6667 Improper Authentication vulnerability in Mcafee web Gateway
Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 7.8.1.0 through 7.8.1.5 allows remote attackers to execute arbitrary code via Java management extensions (JMX).
network
low complexity
mcafee CWE-287
critical
9.8