QID 730272

Date Published: 2021-11-25

QID 730272: McAfee Web Gateway Multiple Vulnerabilities (WP-3806,WP-4203,WP-3710,WP-4073,WP-3663,WP-4158,WP-4164,WP-3247)

McAfee Web Gateway delivers comprehensive security for all aspects of web traffic in one high-performance appliance software architecture. For user-initiated web requests, McAfee Web Gateway first enforces an organization's internet use policy.

Release 8.2.24 and 9.2.15 and 10.2.4 includes updates addressing publicly disclosed CVEs, regardless of whether a CVE has been shown to impact customers.

Affected Versions:
McAfee Web Gateway (MWG) 10.2.x prior to 10.2.4
McAfee Web Gateway (MWG) 9.2.x prior to 9.2.15
McAfee Web Gateway (MWG) 8.2.x prior to 8.2.24

QID Detection Logic :
This QID retrieves McAfee Web Gateway version and checks to see if it's vulnerable.

Successful exploitation of these vulnerabilities affects the Confidentiality, Integrity and Availability

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    McAfee MWG 8.2.24 and 9.2.15 and 10.2.4 update releases address these vulnerabilities. Please visit McAfee Web Gateway Update 8.2.19, McAfee Web Gateway Update 9.2.15 , McAfee Web Gateway Update 10.2.4 for more details.

    CVEs related to QID 730272

    Software Advisories
    Advisory ID Software Component Link
    McAfee Web Gateway Update 10.2.4 URL Logo docs.mcafee.com/bundle/web-gateway-10.2.x-release-notes/page/GUID-BC75480C-8612-4AF7-A6CD-472E27A5F97C.html
    McAfee Web Gateway Update 8.2.24 URL Logo docs.mcafee.com/bundle/web-gateway-8.2.x-release-notes/page/GUID-E1DE86C1-7C88-4B99-85AA-733079AE4F3C.html
    McAfee Web Gateway Update 9.2.15 URL Logo docs.mcafee.com/bundle/web-gateway-9.2.x-release-notes/page/GUID-40ECCC67-1D88-4815-97A1-054F3E8DAE9A.html