"TITLE":"McAfee Application Control and Change Control (MACC) - password management security feature bypass (SFB) leading to an authentication bypass "
},
"affects":{
"vendor":{
"vendor_data":[
{
"product":{
"product_data":[
{
"product_name":"McAfee Application Control and Change Control (MACC)",
"version":{
"version_data":[
{
"affected":"=",
"platform":"x86",
"version_name":"7.0.1",
"version_value":"7.0.1"
},
{
"affected":"=",
"version_name":"6.2.0",
"version_value":"6.2.0"
}
]
}
}
]
},
"vendor_name":"McAfee"
}
]
}
},
"credit":[
{
"lang":"eng",
"value":"McAfee credits Saurabh Tripathi and Sukesh Shetty for reporting this flaw."
"value":"Bypassing password security vulnerability in McAfee Application and Change Control (MACC) 7.0.1 and 6.2.0 allows authenticated users to perform arbitrary command execution via a command-line utility."