mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-02 20:21:38 +02:00
1.0 KiB
1.0 KiB
CVE-2020-7269
Description
Exposure of Sensitive Information in the web interface in McAfee Advanced Threat Defense (ATD) prior to 4.12.2 allows remote authenticated users to view sensitive unencrypted information via a carefully crafted HTTP request parameter. The risk is partially mitigated if your ATD instances are deployed as recommended with no direct access from the Internet to them.
POC
Reference
- https://kc.mcafee.com/corporate/index?page=content&id=SB10336
- https://kc.mcafee.com/corporate/index?page=content&id=SB10336
Github
No PoCs found on GitHub currently.