Vulnerability Details CVE-2019-3629
Application protection bypass vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows unauthenticated user to impersonate system users via specially crafted parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 79.2%
CVSS Severity
CVSS v3 Score 8.3
CVSS v2 Score 4.3
Products affected by CVE-2019-3629
-
cpe:2.3:a:mcafee:enterprise_security_manager:10.0.0
-
cpe:2.3:a:mcafee:enterprise_security_manager:10.2.0
-
cpe:2.3:a:mcafee:enterprise_security_manager:10.3.4
-
cpe:2.3:a:mcafee:enterprise_security_manager:11.0.0
-
cpe:2.3:a:mcafee:enterprise_security_manager:11.1.0
-
cpe:2.3:a:mcafee:enterprise_security_manager:11.1.1
-
cpe:2.3:a:mcafee:enterprise_security_manager:11.1.2
-
cpe:2.3:a:mcafee:enterprise_security_manager:11.1.3