Skip to main content

Vendor/product archive

mcafee / web_gateway CVEs

Beta · best-effort

38 CVEs tagged to mcafee / web_gateway5 Critical, 14 High, 18 Medium, 1 Low, 0 Unrated.

CVE-2022-1254

Published Apr 20, 2022

A URL redirection vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.9, 9.x prior to 9.2.20, 8.x prior to 8.2.27, and 7.x prior to 7.8.2.31, and controlled release 1…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-23885

Published Feb 17, 2021

Privilege escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.8 allows an authenticated user to gain elevated privileges through the User Interface and execute comma…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-7297

Published Sep 16, 2020

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to access protected dashboard data via improper access contr…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7296

Published Sep 15, 2020

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to access protected configuration files via improper access…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7295

Published Sep 15, 2020

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to delete or download protected log data via improper access…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-7294

Published Sep 15, 2020

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to delete or download protected files via improper access co…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7293

Published Sep 15, 2020

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user with low permissions to change the system's root password vi…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-7292

Published Jul 15, 2020

Inappropriate Encoding for output context vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows a remote attacker to cause MWG to return an ambiguous redirect response v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3638

Published Sep 12, 2019

Reflected Cross Site Scripting vulnerability in Administrators web console in McAfee Web Gateway (MWG) 7.8.x prior to 7.8.2.13 allows remote attackers to collect sensitive informa…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3639

Published Aug 14, 2019

Clickjack vulnerability in Adminstrator web console in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows remote attackers to conduct clickjacking attacks via a crafted web…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3635

Published Aug 14, 2019

Exfiltration of Data in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows attackers to obtain sensitive data via crafting a complex webpage that will trigger the Web Gatew…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 38 CVEsPage 1 of 2