Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-1498
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-1498

Description:
Multiple stack-based buffer overflows in the SiteManager.SiteMgr.1 ActiveX control (SiteManager.dll) in the ePO management console in McAfee ePolicy Orchestrator (ePO) before 3.6.1 Patch 1 and ProtectionPilot (PRP) before 1.5.0 HotFix allow remote attackers to execute arbitrary code via a long argument to the (1) ExportSiteList and (2) VerifyPackageCatalog functions, and (3) unspecified vectors involving a swprintf function call.

CVE Status:
Candidate

References:

ST
  1017757

SREASON
  http://securityreason.com/securityalert/2444

SAID
  Secunia Advisory: SA24466

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2007-March/052960.html

CONFIRM

CERT-VN
  714593

BID
  22952


Return to the previous page.