Security Advisory

CVE-2012-4586

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-08-22 10:00:00
Last updated 2024-09-16 23:45:25
Assigner mitre
State PUBLISHED

Description

McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, accesses files with the privileges of the root user, which allows remote authenticated users to bypass intended permission settings by requesting a file.