Vulnerability CVE-2014-9921


Published: 2017-03-14   Modified: 2017-03-15

Description:
Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1.0.0.3x, 1.0.0.4d and earlier allows remote unauthenticated users to view, add, and remove users via a configuration error.

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
9.7/10
9.5/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Partial
Affected software
Mcafee -> Cloud analysis and deconstructive services 

 References:
https://kc.mcafee.com/corporate/index?page=content&id=SB10087

Copyright 2024, cxsecurity.com

 

Back to Top