Medium severity4.3NVD Advisory· Published Jul 15, 2020· Updated Jun 17, 2026
CVE-2020-7292
CVE-2020-7292
Description
Inappropriate Encoding for output context vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows a remote attacker to cause MWG to return an ambiguous redirect response via getting a user to click on a malicious URL.
Affected products
3cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*range: >=7.8.0,<7.8.2.22
- (no CPE)range: <9.2.1
- McAfee/McAfee Web Gateway (MWG)v5Range: unspecified
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.