CVE Published: 15/07/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: trellix |
Vendor: McAfee |
Product: McAfee Web Gateway (MWG) Status : PUBLISHED
CVE-2020-7292 Description
Inappropriate Encoding for output context vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows a remote attacker to cause MWG to return an ambiguous redirect response via getting a user to click on a malicious URL.
Metrics
CVSS Version: 3.1 |
Base Score: 4.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N