CVE-2018-6667: McAfee Web Gateway

Critical severity, CVSS 9.8. EPSS: 3.5% chance of exploitation in the next 30 days.

Authentication Bypass vulnerability in the administrative user interface in McAfee Web Gateway 7.8.1.0 through 7.8.1.5 allows remote attackers to execute arbitrary code via Java management extensions (JMX).

Affected products

  • McAfee McAfee Web Gateway: from 7.8.1.0, up to and including 7.8.1.5

Published 2018-06-26. Last modified 2026-06-17.