Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
McAfee ePolicy Orchestrator Agent HTTP POST缓冲区错误管理漏洞
Vulnerability Description
McAfee Security ePolicy Orchestrator是一款企业级反病毒管理工具。 McAfee ePolicy Orchestrator agent存在缓冲区管理问题,远程攻击者可以利用这个漏洞对程序进行拒绝服务攻击。 攻击者可以提交包含部分恶意值的HTTP POST请求,由于ePolicy Orchestrator没有进行充分过滤,可导致受此漏洞影响的代理端崩溃,虽然没有得到证实,不过此漏洞相信允许攻击者触发缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A