Beveiligingsadvies

CVE-2017-3936

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-06-13 21:00:00
Laatst bijgewerkt 2024-08-05 14:39:41
Toegewezen door trellix
CVSS-score 6.2
Status PUBLISHED

Beschrijving

OS Command Injection vulnerability in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, 5.3.1, 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows attackers to run arbitrary OS commands with limited privileges via not sanitizing the user input data before exporting it into a CSV format output.