QID 730409

Date Published: 2022-03-28

QID 730409: McAfee Web Gateway Multiple Vulnerabilities (WP-4451,WP-4134,WP-4350,WP-4331,WP-4408,WP-4440,WP-4444,WP-4518,WP-4347,WP-4416)

McAfee Web Gateway delivers comprehensive security for all aspects of web traffic in one high-performance appliance software architecture. For user-initiated web requests, McAfee Web Gateway first enforces an organization's internet use policy. Release 9.2.18 includes updates addressing publicly disclosed CVEs, regardless of whether a CVE has been shown to impact customers. Affected Versions:
McAfee Web Gateway (MWG) 9.2.x prior to 9.2.18

QID Detection Logic :
This QID retrieves McAfee Web Gateway version and checks to see if it's vulnerable.

Successful exploitation of these vulnerabilities affects the Confidentiality, Integrity and Availability

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.2 severity.
  • Solution
    McAfee MWG 9.2.18 update releases address these vulnerabilities. Please visit McAfee Web Gateway Update 9.2.18
    Software Advisories
    Advisory ID Software Component Link
    McAfee Web Gateway 9.2.x URL Logo docs.mcafee.com/bundle/web-gateway-9.2.x-release-notes/page/GUID-02460556-F4D6-4F42-B8E3-950721CEB2FE.html