6.3
CVSSv2

CVE-2014-2205

Published: 26/02/2014 Updated: 09/10/2018
CVSS v2 Base Score: 6.3 | Impact Score: 6.9 | Exploitability Score: 6.8
VMScore: 561
Vector: AV:N/AC:M/Au:S/C:C/I:N/A:N

Vulnerability Summary

The Import and Export Framework in McAfee ePolicy Orchestrator (ePO) prior to 4.6.7 Hotfix 940148 allows remote authenticated users with permissions to add dashboards to read arbitrary files by importing a crafted XML file, related to an XML External Entity (XXE) issue.

Vulnerable Product Search on Vulmon Subscribe to Product

mcafee epolicy orchestrator 4.6.3

mcafee epolicy orchestrator 4.6.2

mcafee epolicy orchestrator 4.6.5

mcafee epolicy orchestrator 4.6.4

mcafee epolicy orchestrator

mcafee epolicy orchestrator 4.6.6

mcafee epolicy orchestrator 4.6.1

mcafee epolicy orchestrator 4.6.0