CVE-2012-4594

McAfee ePolicy Orchestrator (ePO) 4.6.1 and earlier allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information from arbitrary reporting panels, via a modified ID value in a console URL.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 37%
VendorProductVersion
mcafeeepolicy_orchestrator
𝑥
≤ 4.6.1
mcafeeepolicy_orchestrator
2.0
mcafeeepolicy_orchestrator
2.5
mcafeeepolicy_orchestrator
2.5:sp1
mcafeeepolicy_orchestrator
2.5.1
mcafeeepolicy_orchestrator
3.0
mcafeeepolicy_orchestrator
3.0:sp2a
mcafeeepolicy_orchestrator
3.5.0
mcafeeepolicy_orchestrator
3.6.0
mcafeeepolicy_orchestrator
3.6.1
mcafeeepolicy_orchestrator
4.0
mcafeeepolicy_orchestrator
4.5.0
mcafeeepolicy_orchestrator
4.6.0
𝑥
= Vulnerable software versions
Common Weakness Enumeration