Vulnerability Details CVE-2012-4583
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.1%
CVSS Severity
CVSS v2 Score 4.0
Products affected by CVE-2012-4583
-
cpe:2.3:a:mcafee:email_and_web_security:5.0
-
cpe:2.3:a:mcafee:email_and_web_security:5.5
-
cpe:2.3:a:mcafee:email_and_web_security:5.6
-
cpe:2.3:a:mcafee:email_gateway:7.0