Vulnerabilities > Mcafee > Protectionpilot

DATE CVE VULNERABILITY TITLE RISK
2007-07-12 CVE-2006-5274 Memory Corruption vulnerability in Mcafee products
Integer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.5.5.438 allows remote attackers to cause a denial of service (CMA Framework service crash) and possibly execute arbitrary code via unspecified vectors.
network
high complexity
mcafee
7.6
2007-07-12 CVE-2006-5273 Memory Corruption vulnerability in Mcafee products
Heap-based buffer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.5.5.438 through 3.6.0.453 allows remote attackers to execute arbitrary code via a crafted packet.
network
high complexity
mcafee
7.6
2007-07-12 CVE-2006-5272 Memory Corruption vulnerability in Mcafee products
Stack-based buffer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and earlier allows remote attackers to execute arbitrary code via a crafted ping packet.
network
low complexity
mcafee
7.5
2007-07-12 CVE-2006-5271 Memory Corruption vulnerability in Mcafee E-Business Server and Protectionpilot
Integer underflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and earlier allows remote attackers to execute arbitrary code via a crafted UDP packet, which causes stack corruption.
network
high complexity
mcafee
7.6
2007-03-16 CVE-2007-1498 Remote Buffer Overflow vulnerability in Mcafee Epolicy Orchestrator and Protectionpilot
Multiple stack-based buffer overflows in the SiteManager.SiteMgr.1 ActiveX control (SiteManager.dll) in the ePO management console in McAfee ePolicy Orchestrator (ePO) before 3.6.1 Patch 1 and ProtectionPilot (PRP) before 1.5.0 HotFix allow remote attackers to execute arbitrary code via a long argument to the (1) ExportSiteList and (2) VerifyPackageCatalog functions, and (3) unspecified vectors involving a swprintf function call.
network
mcafee
critical
9.3
2006-10-05 CVE-2006-5156 Remote Buffer Overflow vulnerability in Mcafee Epolicy Orchestrator and Protectionpilot
Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbitrary code via a request to /spipe/pkg/ with a long source header.
network
low complexity
mcafee
critical
10.0