Vulnerabilities > CVE-2004-0095 - Buffer Mismanagement vulnerability in Mcafee Epolicy Orchestrator 3.6.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
mcafee
exploit available

Summary

McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow.

Vulnerable Configurations

Part Description Count
Application
Mcafee
1

Exploit-Db

descriptionMcAfee ePolicy Orchestrator 1.x/2.x/3.0 Agent HTTP POST Buffer Mismanagement Vulnerability. CVE-2004-0095. Dos exploit for windows platform
idEDB-ID:23584
last seen2016-02-02
modified2004-01-22
published2004-01-22
reportercyber_flash
sourcehttps://www.exploit-db.com/download/23584/
titleMcAfee ePolicy Orchestrator 1.x/2.x/3.0 Agent HTTP POST Buffer Mismanagement Vulnerability