CVE-2014-2535: McAfee Web Gateway
Medium severity, CVSS 4.0. EPSS: 2.1% chance of exploitation in the next 30 days.
Directory traversal vulnerability in McAfee Web Gateway (MWG) 7.4.x before 7.4.1, 7.3.x before 7.3.2.6, and 7.2.0.9 and earlier allows remote authenticated users to read arbitrary files via a crafted request to the web filtering port.
Affected products
- McAfee Web Gateway: from 7.2.0, up to and including 7.2.0.9; from 7.3.2, before 7.3.2.6 (fixed in 7.3.2.6); from 7.4.0, before 7.4.1 (fixed in 7.4.1)
Published 2014-03-18. Last modified 2026-06-17.