CVE-2020-7297

MEDIUM

McAfee Web Gateway 7.8.0-7.8.2.22 - Authenticated Privilege Escalation via User Interface

Title source: llm
STIX 2.1

Description

Privilege Escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows authenticated user interface user to access protected dashboard data via improper access control in the user interface.

References (1)

Core 1
Core References

Scores

CVSS v3 5.7
EPSS 0.0009
EPSS Percentile 24.9%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-287
Status published
Products (1)
mcafee/web_gateway 7.8.0 - 7.8.2.22
Published Sep 16, 2020
Tracked Since Feb 18, 2026