CVE Vulnerabilities

CVE-2018-6671

Published: Jun 15, 2018 | Modified: Nov 07, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Application Protection Bypass vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.0 through 5.3.3 and 5.9.0 through 5.9.1 allows remote authenticated users to bypass localhost only access security protection for some ePO features via a specially crafted HTTP request.

Affected Software

Name Vendor Start Version End Version
Epolicy_orchestrator Mcafee 5.3.0 (including) 5.3.3 (including)
Epolicy_orchestrator Mcafee 5.9.0 (including) 5.9.1 (including)

References