CVE-2019-3606: McAfee Network Security Manager

Medium severity, CVSS 4.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Data Leakage Attacks vulnerability in the web portal component when in an MDR pair in McAfee Network Security Management (NSM) 9.1 < 9.1.7.75 (Update 4) and 9.2 < 9.2.7.31 Update2 allows administrators to view configuration information in plain text format via the GUI or GUI terminal commands.

Affected products

  • McAfee Network Security Manager: from 9.1, before 9.1.7.75 (fixed in 9.1.7.75); from 9.2, before 9.2.7.31 (fixed in 9.2.7.31)

Published 2019-03-26. Last modified 2026-06-17.