Application Protection Bypass vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.0 through 5.3.3 and 5.9.0 through 5.9.1 allows remote authenticated users to bypass localhost only access security protection for some ePO features via a specially crafted HTTP request.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/104485 - | |
References | () http://www.securitytracker.com/id/1041155 - | |
References | () https://kc.mcafee.com/corporate/index?page=content&id=SB10240 - | |
References | () https://www.exploit-db.com/exploits/46518/ - | |
CVSS |
v2 : v3 : |
v2 : 4.0
v3 : 4.7 |
07 Nov 2023, 03:00
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.exploit-db.com/exploits/46518/ - | |
References | () http://www.securitytracker.com/id/1041155 - | |
References | () http://www.securityfocus.com/bid/104485 - | |
References | () https://kc.mcafee.com/corporate/index?page=content&id=SB10240 - |
Information
Published : 2018-06-15 14:29
Updated : 2024-11-21 04:11
NVD link : CVE-2018-6671
Mitre link : CVE-2018-6671
CVE.ORG link : CVE-2018-6671
JSON object : View
Products Affected
mcafee
- epolicy_orchestrator
CWE