CVE-2019-3635 is a vulnerability in McAfee Web Gateway
Published on August 14, 2019
MWG Proxy: Cross-Frame Scripting vulnerability
Exfiltration of Data in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows attackers to obtain sensitive data via crafting a complex webpage that will trigger the Web Gateway to block the user accessing an iframe.
Products Associated with CVE-2019-3635
Want to know whenever a new CVE is published for McAfee Web Gateway? stack.watch will email you.
Affected Versions
McAfee, LLC McAfee Web Gateway (MWG):- Version 7.8.2.x and below 7.8.2.12 is affected.
Exploit Probability
EPSS
0.32%
Percentile
54.48%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.