VYPR

Threat Intelligence Exchange Server (tie Server)

by McAfee

CVEs (3)

  • CVE-2018-6695MedOct 3, 2018
    risk 0.38cvss 5.9epss 0.01

    SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2.0.x, 2.1.x, 2.2.0 allows man-in-the-middle attackers to spoof servers via acquiring keys from another environment.

  • CVE-2017-3907MedJun 13, 2018
    risk 0.35cvss 5.4epss 0.02

    Code Injection vulnerability in the ePolicy Orchestrator (ePO) extension in McAfee Threat Intelligence Exchange (TIE) Server 2.1.0 and earlier allows remote attackers to execute arbitrary HTML code to be reflected in the response web page via unspecified vector.

  • CVE-2019-3641Nov 13, 2019
    risk 0.00cvss epss 0.01

    Abuse of Authorization vulnerability in APIs exposed by TIE server in McAfee Threat Intelligence Exchange Server (TIE Server) 3.0.0 allows remote authenticated users to modify stored reputation data via specially crafted messages.