01642 06 11 11 Arrange Call

Arbitrary Command Execution Vulnerability in McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3

CVE-2004-0038 · HIGH

CVE-2004-0038

McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary commands via certain HTTP POST requests to the spipe/file handler on ePO TCP port 81.

Learn more about our Web Application Penetration Testing UK.