cve/2019/CVE-2019-3641.md

18 lines
814 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2019-3641](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-3641)
![](https://img.shields.io/static/v1?label=Product&message=Threat%20Intelligence%20Exchange%20Server%20(TIE%20Server)&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=3.0.x%3D%203.0.0%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-285%20Improper%20Authorization&color=brighgreen)
### Description
Abuse of Authorization vulnerability in APIs exposed by TIE server in McAfee Threat Intelligence Exchange Server (TIE Server) 3.0.0 allows remote authenticated users to modify stored reputation data via specially crafted messages.
### POC
#### Reference
- https://kc.mcafee.com/corporate/index?page=content&id=SB10303
#### Github
No PoCs found on GitHub currently.