← Back

CVE-2019-3661

nvd nist
Published: Nov 14, 2019Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticated attacker to execute database commands via carefully constructed time based payloads.

Affected (1)

1 product
Advanced Threat Defense
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.8

References (2)

Timeline

No history available yet.