CVE-2019-3641
Summary
| CVE | CVE-2019-3641 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-11-13 11:15:00 UTC |
| Updated | 2023-11-07 03:10:00 UTC |
| Description | Abuse of Authorization vulnerability in APIs exposed by TIE server in McAfee Threat Intelligence Exchange Server (TIE Server) 3.0.0 allows remote authenticated users to modify stored reputation data via specially crafted messages. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mcafee | Threat Intelligence Exchange Server | 3.0.0 | All | All | All |
| Application | Mcafee | Threat Intelligence Exchange Server | 3.0.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| McAfee Security Bulletin - Threat Intelligence Exchange Server update fixes an Exploitation of Authorization vulnerability (CVE-2019-3641) | CONFIRM | kc.mcafee.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.