Description
Format string vulnerability in McAfee Security ePolicy Orchestrator (ePO) 2.5.1 allows remote attackers to execute arbitrary code via an HTTP GET request with a URI containing format strings.
Affected products
- McAfee / epolicy_orchestrator2.5.1 – 2.5.1
References
- MISChttp://www.osvdb.org/4375
- MISChttp://www.securityfocus.com/archive/1/315230/30/25490/threaded
- VENDOR_ADVISORYhttp://secunia.com/advisories/8311
- VENDOR_ADVISORYhttp://www.atstake.com/research/advisories/2003/a031703-1.txt
- MISChttp://www.securityfocus.com/bid/7111
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/11559
Updated 36m ago · 2 sources