CVE-2003-0149

McAfee ePolicy Orchestrator 2.0-2.5.1 - Remote Code Execution via Long POST Parameters

Title source: llm
STIX 2.1

Description

Heap-based buffer overflow in ePO agent for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request containing long parameters.

References (2)

Core 2
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_atstake
http://www.atstake.com/research/advisories/2003/a073103-1.txt
Patch, Vendor Advisory x_refsource_confirm
http://www.nai.com/us/promos/mcafee/epo_vulnerabilities.asp

Scores

EPSS 0.0166
EPSS Percentile 82.3%

Details

Status published
Products (3)
mcafee/epolicy_orchestrator 2.0
mcafee/epolicy_orchestrator 2.5 (2 CPE variants)
mcafee/epolicy_orchestrator 2.5.1
Published Aug 27, 2003
Tracked Since Feb 18, 2026