CVE-2022-0815
McAfee WebAdvisor - Extension Fingerprinting vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Improper access control vulnerability in McAfee WebAdvisor Chrome and Edge browser extensions up to 8.1.0.1895 allows a remote attacker to gain access to McAfee WebAdvisor settings and other details about the user’s system. This could lead to unexpected behaviors including; settings being changed, fingerprinting of the system leading to targeted scams, and not triggering the malicious software if McAfee software is detected.
Una vulnerabilidad de control de acceso inapropiada en las extensiones del navegador McAfee WebAdvisor Chrome y Edge versiones hasta 8.1.0.1895, permite a un atacante remoto acceder a la configuración de McAfee WebAdvisor y a otros detalles del sistema del usuario. Esto podría conllevar a comportamientos no esperados, como el cambio de la configuración, la toma de huellas dactilares del sistema, conllevando a una realización de estafas selectivas, y no desencadenando el software malicioso si es detectado el software de McAfee
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-03-01 CVE Reserved
- 2022-03-10 CVE Published
- 2024-08-02 CVE Updated
- 2024-10-14 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-668: Exposure of Resource to Wrong Sphere
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://service.mcafee.com/?articleId=TS103273&page=shell&shell=article-view | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mcafee Search vendor "Mcafee" | Webadvisor Search vendor "Mcafee" for product "Webadvisor" | <= 8.1.0.1895 Search vendor "Mcafee" for product "Webadvisor" and version " <= 8.1.0.1895" | - |
Affected
|