High severity8.0NVD Advisory· Published Feb 24, 2020· Updated Jun 17, 2026
CVE-2019-3670
CVE-2019-3670
Description
Remote Code Execution vulnerability in the web interface in McAfee Web Advisor (WA) 8.0.34745 and earlier allows remote unauthenticated attacker to execute arbitrary code via a cross site scripting attack.
Affected products
4- McAfee, LLC/Web Advisor (WA)v5Range: 8.0.0.x
<=8.0.34745+ 2 more
- (no CPE)range: <=8.0.34745
- cpe:2.3:a:mcafee:web_advisor:*:*:*:*:*:chrome:*:*range: <=8.0.34745
- cpe:2.3:a:mcafee:web_advisor:*:*:*:*:*:firefox:*:*range: <=8.0.0.34239
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.