McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
BID:28228
Info
McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
| Bugtraq ID: | 28228 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-1357 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 12 2008 12:00AM |
| Updated: | May 07 2015 05:32PM |
| Credit: | Luigi Auriemma is credited with the discovery of this vulnerability. |
| Vulnerable: |
McAfee McAfee Framework 3.6 .569 McAfee ePolicy Orchestrator 4.0 McAfee Common Management Agent (CMA) 3.6 .574 McAfee Common Management Agent (CMA) 3.6 .546 McAfee Common Management Agent (CMA) 3.6 .453 McAfee Common Management Agent (CMA) 3.6 .438 McAfee Common Management Agent (CMA) 3.5.5 .438 McAfee Common Management Agent (CMA) 3.0.6 .453 McAfee Agent 4.0 |
| Not Vulnerable: | |
Discussion
McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
McAfee Framework is prone to a remote format-string vulnerability.
Exploiting this issue will allow attackers to execute arbitrary code with the permissions of the framework or of an application that uses the framework. Failed attacks will likely cause denial-of-service conditions.
McAfee Common Managemetn Agent 3.6.0.574 (Patch3) or earlier, McAfee Agent (MA) 4.0, Framework 2.6.0.569 and ePolicy Orchestrator 4.0 are vulnerable to this issue; other versions may also be affected.
NOTE: This issue occurs only when the default debug level (7) is raised to 8.
McAfee Framework is prone to a remote format-string vulnerability.
Exploiting this issue will allow attackers to execute arbitrary code with the permissions of the framework or of an application that uses the framework. Failed attacks will likely cause denial-of-service conditions.
McAfee Common Managemetn Agent 3.6.0.574 (Patch3) or earlier, McAfee Agent (MA) 4.0, Framework 2.6.0.569 and ePolicy Orchestrator 4.0 are vulnerable to this issue; other versions may also be affected.
NOTE: This issue occurs only when the default debug level (7) is raised to 8.
Exploit / POC
McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
The following proof-of-concept exploit code is available:
The following proof-of-concept exploit code is available:
Solution / Fix
McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
McAfee Framework ePolicy Orchestrator '_naimcomn_Log' Remote Format String Vulnerability
References:
References: