CVE-2011-5100: McAfee Firewall Reporter

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

The web interface in McAfee Firewall Reporter before 5.1.0.13 does not properly implement cookie authentication, which allows remote attackers to obtain access, and disable anti-virus functionality, via an HTTP request.

Affected products

  • McAfee Firewall Reporter: up to and including 5.1.0.6

Published 2012-08-22. Last modified 2026-06-16.