CVE-2002-0690

high

Description

Format string vulnerability in McAfee Security ePolicy Orchestrator (ePO) 2.5.1 allows remote attackers to execute arbitrary code via an HTTP GET request with a URI containing format strings.

References

http://secunia.com/advisories/8311

http://www.atstake.com/research/advisories/2003/a031703-1.txt

http://www.osvdb.org/4375

http://www.securityfocus.com/archive/1/315230/30/25490/threaded

http://www.securityfocus.com/bid/7111

https://exchange.xforce.ibmcloud.com/vulnerabilities/11559

Details

Source: MITRE

Published: 2003-04-11

Updated: 2018-10-19

Risk Information

CVSS v2

Base Score: 10

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 10

Severity: HIGH