CVE-2017-4057

HIGH

McAfee ATD <3.10 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands.

References (2)

Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
https://kc.mcafee.com/corporate/index?page=content&id=SB10204
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/99561

Scores

CVSS v3 8.8
EPSS 0.0095
EPSS Percentile 76.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (8)
McAfee/Advanced Threat Defense (ATD) 3.10
McAfee/Advanced Threat Defense (ATD) 3.6
McAfee/Advanced Threat Defense (ATD) 3.8
McAfee/Advanced Threat Defense (ATD) 3.9
mcafee/advanced_threat_defense 3.4
mcafee/advanced_threat_defense 3.6
mcafee/advanced_threat_defense 3.8
mcafee/advanced_threat_defense 3.10
Published Jul 12, 2017
Tracked Since Feb 18, 2026