Unrated severityNVD Advisory· Published Aug 22, 2012· Updated Apr 29, 2026
CVE-2012-4586
CVE-2012-4586
Description
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, accesses files with the privileges of the root user, which allows remote authenticated users to bypass intended permission settings by requesting a file.
Affected products
4cpe:2.3:a:mcafee:email_and_web_security:5.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mcafee:email_and_web_security:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:mcafee:email_and_web_security:5.5:*:*:*:*:*:*:*
- cpe:2.3:a:mcafee:email_and_web_security:5.6:*:*:*:*:*:*:*
- cpe:2.3:a:mcafee:email_gateway:7.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- kc.mcafee.com/corporate/indexnvdVendor Advisory
News mentions
0No linked articles in our index yet.