Security Advisory

CVE-2018-6703

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-12-11 23:00:00
Last updated 2024-08-05 06:10:11
Assigner trellix
CVSS score 9.8
State PUBLISHED

Description

Use After Free in Remote logging (which is disabled by default) in McAfee McAfee Agent (MA) 5.x prior to 5.6.0 allows remote unauthenticated attackers to cause a Denial of Service and potentially a remote code execution via a specially crafted HTTP header sent to the logging service.