CVE Database
/

CVE-2016-8027

Back to search

CVE-2016-8027

Published: Mar 14, 2017

Modified: Aug 6, 2024

PUBLISHED

Description

SQL injection vulnerability in core services in Intel Security McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier allows attackers to alter a SQL query, which can result in disclosure of information within the database or impersonation of an agent without authentication via a specially crafted HTTP post.

VendorProductVersions

n/a

McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier

affected
McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier

References

1037777
vdb-entry
x_refsource_SECTRACK
95981
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now