7.5

CVE-2004-0038

McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary commands via certain HTTP POST requests to the spipe/file handler on ePO TCP port 81.

Data is provided by the National Vulnerability Database (NVD)
McafeeEpolicy Orchestrator Version2.5
McafeeEpolicy Orchestrator Version2.5 Updatesp1
McafeeEpolicy Orchestrator Version2.5.1
McafeeEpolicy Orchestrator Version3.0
McafeeEpolicy Orchestrator Version3.0 Updatesp2a
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.78% 0.81
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P