← Back

CVE-2019-3661

nvd nist
Published: Nov 14, 2019Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticated attacker to execute database commands via carefully constructed time based payloads.

Affected (1)

1 product
Advanced Threat Defense
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.8

References (2)

Timeline

No history available yet.