ZeroHour

CVE-2019-3654

CVSS 3.1
8.6 high
EPSS
<1%p50
Published
()
Modified
Description

Authentication Bypass vulnerability in the Microsoft Windows client in McAfee Client Proxy (MCP) prior to 3.0.0 allows local user to bypass scanning of web traffic and gain access to blocked sites for a short period of time via generating an authorization key on the client which should only be generated by the network administrator.

Vendors
mcafee
Products
client proxy
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.