CVE-2019-3670: McAfee Web Advisor

Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.

Remote Code Execution vulnerability in the web interface in McAfee Web Advisor (WA) 8.0.34745 and earlier allows remote unauthenticated attacker to execute arbitrary code via a cross site scripting attack.

Affected products

  • McAfee Web Advisor: up to and including 8.0.34745; up to and including 8.0.0.34239

Published 2020-02-24. Last modified 2026-06-17.