McAfee.ePolicy.Orchestrator.SiteManager.ActiveX.Buffer.Overflow

description-logoDescription

The SiteManager.SiteMgr.1 ActiveX control (SiteManager.dll), in the ePO management console in McAfee ePolicy Orchestrator, has multiple stack based buffer overflow vulnerabilities. A remote attacker could execute arbitrary code on a system via a crafted malicious web page.

affected-products-logoAffected Products

McAfee ePolicy Orchestrator (ePO) versions 3.x
McAfee ProtectionPilot versions 1.x

Impact logoImpact

System compromise.

recomended-action-logoRecommended Actions

Apply patch, available from the Web site.
https://mysupport.mcafee.com/eservice_enu/start.swe

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-11-22 15.729 Name:McAfee.
EPolicy.
Orchestrator.
SiteManager.
ActiveX.
Buffer.
Overflow:McAfee.
ePolicy.
Orchestrator.
SiteManager.
ActiveX.
Buffer.
Overflow