Vulnerabilities > CVE-2004-0038 - Remote Code Execution vulnerability in Mcafee Epolicy Orchestrator 2.5/2.5.1/3.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary commands via certain HTTP POST requests to the spipe/file handler on ePO TCP port 81.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |