Critical severity9.0NVD Advisory· Published Feb 17, 2021· Updated Jun 17, 2026
CVE-2021-23885
CVE-2021-23885
Description
Privilege escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.8 allows an authenticated user to gain elevated privileges through the User Interface and execute commands on the appliance via incorrect improper neutralization of user input in the troubleshooting page.
Affected products
3cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*range: <8.2.17
- (no CPE)range: <9.2.8
- McAfee,LLC/McAfee Web Gateway (MWG)v5Range: unspecified
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.