Back to search
CVE-2013-0141
Published: May 1, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
Directory traversal vulnerability in McAfee ePolicy Orchestrator (ePO) before 4.5.7 and 4.6.x before 4.6.6 allows remote attackers to upload arbitrary files via a crafted request over the Agent-Server communication channel, as demonstrated by writing to the Software/ directory.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
VU#209131
third-party-advisory
x_refsource_CERT-VN
https://kc.mcafee.com/corporate/index?page=content&id=SB10042
x_refsource_CONFIRM
TA13-193A
third-party-advisory
x_refsource_CERT
20140427 Re: Exploit: McAfee ePolicy 0wner (ePowner ) ââ¬â Release
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now