Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web interface in McAfee Email Gateway (formerly IronMail) 6.7.1 allows remote authenticated users, with only Read privileges, to gain Write privileges to modify configuration via the save action in a direct request to admin/systemWebAdminConfig.do.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
McAfee Email Gateway权限许可和访问控制漏洞
Vulnerability Description
McAfee Email Gateway (以前叫IronMail)的网络接口存在漏洞,只有读取权限的远程认证用户可以利用对admin/systemWebAdminConfig.do目录的直接请求的保存功能,获取更改配置的权限。
CVSS Information
N/A
Vulnerability Type
N/A