CVE-2017-3980

Summary

A directory traversal vulnerability in the ePO Extension in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, and 5.1.3 and earlier allows remote authenticated users to execute a command of their choice via an authenticated ePO session.

Affected Software

VendorProductVersion RangeStatus
McAfeeePolicy Orchestrator (ePO)5.9.0 and earlieraffected
McAfeeePolicy Orchestrator (ePO)5.3.2 and earlieraffected
McAfeeePolicy Orchestrator (ePO)5.1.3 and earlieraffected

Weaknesses

  • A directory traversal vulnerability

ADP Enrichment

CVE Program Container

Additional References

References