Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbitrary code via a request to /spipe/pkg/ with a long source header.
Vulnerable Products 4
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Mcafee Epolicy_Orchestrator
cpe:2.3:a:mcafee:epolicy_orchestrator:3.0:*:*:*:*:*:*:*
|
— | — |
|
Mcafee Epolicy_Orchestrator
cpe:2.3:a:mcafee:epolicy_orchestrator:3.0:sp2a:*:*:*:*:*:*
|
— | — |
|
Mcafee Epolicy_Orchestrator
cpe:2.3:a:mcafee:epolicy_orchestrator:3.5.0:*:*:*:*:*:*:*
|
— | — |
|
Mcafee Protectionpilot
cpe:2.3:a:mcafee:protectionpilot:1.1.1:*:*:*:*:*:*:*
|
— | — |