Vulnerabilities > CVE-2002-0690 - Unspecified vulnerability in Mcafee Epolicy Orchestrator 2.5.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN mcafee
nessus
Summary
Format string vulnerability in McAfee Security ePolicy Orchestrator (ePO) 2.5.1 allows remote attackers to execute arbitrary code via an HTTP GET request with a URI containing format strings.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Web Servers |
NASL id | EPOLICY_ORCHESTRATOR_FORMAT_STRING.NASL |
description | If the remote web server is ePolicy Orchestrator, an attacker may use this flaw to execute code with the SYSTEM privileges on this host. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11409 |
published | 2003-03-17 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11409 |
title | ePolicy Orchestrator HTTP GET Request Remote Format String |
code |
|
References
- http://secunia.com/advisories/8311
- http://secunia.com/advisories/8311
- http://www.atstake.com/research/advisories/2003/a031703-1.txt
- http://www.atstake.com/research/advisories/2003/a031703-1.txt
- http://www.osvdb.org/4375
- http://www.osvdb.org/4375
- http://www.securityfocus.com/archive/1/315230/30/25490/threaded
- http://www.securityfocus.com/archive/1/315230/30/25490/threaded
- http://www.securityfocus.com/bid/7111
- http://www.securityfocus.com/bid/7111
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11559
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11559