HIGH · 7.5

CVE-2006-5272

Stack-based buffer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and earlier allows remote attackers to execute ...

Vulnerability Description

Stack-based buffer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and earlier allows remote attackers to execute arbitrary code via a crafted ping packet.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
McafeeCommon Management Agent<= 3.6.0.453
McafeeE-Business Server3.5
McafeeProtectionpilot1.1.1

References

FAQ

What is CVE-2006-5272?

CVE-2006-5272 is a vulnerability with a CVSS score of 7.5 (HIGH). Stack-based buffer overflow in McAfee ePolicy Orchestrator 3.5 through 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and earlier allows remote attackers to execute ...

How severe is CVE-2006-5272?

CVE-2006-5272 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-5272?

Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Common Management Agent, Mcafee E-Business Server, Mcafee Protectionpilot.