Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

McAfee ePolicy Orchestrator (ePO) - OS Command Injection vulnerability

Disclosure Date: June 13, 2018 (last updated November 08, 2023)
OS Command Injection vulnerability in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, 5.3.1, 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows attackers to run arbitrary OS commands with limited privileges via not sanitizing the user input data before exporting it into a CSV format output.
0
Attacker Value
Unknown

CVE-2017-3902

Disclosure Date: February 13, 2017 (last updated November 26, 2024)
Cross-site scripting (XSS) vulnerability in the Web user interface (UI) in Intel Security ePO 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows authenticated users to inject malicious Java scripts via bypassing input validation.
0