Exposure of Sensitive Information in the web interface in McAfee Advanced Threat Defense (ATD) before 4.12.2 allows remote authenticated users to view sensitive unencrypted information via a carefully crafted HTTP request parameter. The risk is partially mitigated if your ATD instances are deployed as recommended with no direct access from the Internet to them.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mcafee advanced threat defense |