CVE-2012-4599

McAfee SmartFilter Administration < 4.2.1 - Unauthenticated Remote Code Execution via JBoss RMI Interface

Title source: llm
STIX 2.1

Description

McAfee SmartFilter Administration, and SmartFilter Administration Bess Edition, before 4.2.1.01 does not require authentication for access to the JBoss Remote Method Invocation (RMI) interface, which allows remote attackers to execute arbitrary code via a crafted .war file.

References (1)

Core 1
Core References

Scores

EPSS 0.0552
EPSS Percentile 90.3%

Details

CWE
CWE-287
Status published
Products (1)
mcafee/smartfilter_administration < 4.2.1 (2 CPE variants)
Published Aug 22, 2012
Tracked Since Feb 18, 2026