4
CVSSv2

CVE-2015-0921

Published: 09/01/2015 Updated: 08/09/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 440
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

XML external entity (XXE) vulnerability in the Server Task Log in McAfee ePolicy Orchestrator (ePO) prior to 4.6.9 and 5.x prior to 5.1.2 allows remote authenticated users to read arbitrary files via the conditionXML parameter to the taskLogTable to orionUpdateTableFilter.do.

Vulnerable Product Search on Vulmon Subscribe to Product

mcafee epolicy orchestrator

mcafee epolicy orchestrator 5.0.0

mcafee epolicy orchestrator 5.0.1

mcafee epolicy orchestrator 5.1.0

mcafee epolicy orchestrator 5.1.1