Vulnerability Description
An unspecified ActiveX control in McAfee Virtual Technician (MVT) before 6.4, and ePO-MVT, allows remote attackers to execute arbitrary code or cause a denial of service (Internet Explorer crash) via a crafted web site.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Mcafee Virtual Technician | <= 6.3.0.1911 |
| Mcafee | Epo Mcafee Virtual Technician | <= 1.0.7 |
References
- https://kc.mcafee.com/corporate/index?page=content&id=SB10028Vendor Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10028Vendor Advisory
FAQ
What is CVE-2012-4598?
CVE-2012-4598 is a vulnerability with a CVSS score of 9.3 (HIGH). An unspecified ActiveX control in McAfee Virtual Technician (MVT) before 6.4, and ePO-MVT, allows remote attackers to execute arbitrary code or cause a denial of service (Internet Explorer crash) via ...
How severe is CVE-2012-4598?
CVE-2012-4598 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-4598?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Mcafee Virtual Technician, Mcafee Epo Mcafee Virtual Technician.