CVE-2012-4594

EUVD-2012-4519
McAfee ePolicy Orchestrator (ePO) 4.6.1 and earlier allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information from arbitrary reporting panels, via a modified ID value in a console URL.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 36%
Affected Products (NVD)
VendorProductVersion
mcafeeepolicy_orchestrator
𝑥
≤ 4.6.1
mcafeeepolicy_orchestrator
2.0
mcafeeepolicy_orchestrator
2.5
mcafeeepolicy_orchestrator
2.5:sp1
mcafeeepolicy_orchestrator
2.5.1
mcafeeepolicy_orchestrator
3.0
mcafeeepolicy_orchestrator
3.0:sp2a
mcafeeepolicy_orchestrator
3.5.0
mcafeeepolicy_orchestrator
3.6.0
mcafeeepolicy_orchestrator
3.6.1
mcafeeepolicy_orchestrator
4.0
mcafeeepolicy_orchestrator
4.5.0
mcafeeepolicy_orchestrator
4.6.0
𝑥
= Vulnerable software versions
Common Weakness Enumeration