Loading HuntDB...

GHSA-9533-g28x-xwf2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a local attacker to point an ePO server to an arbitrary SQL server during the restoration of the ePO server. To achieve this the attacker would have to be logged onto the server hosting the ePO server (restricted to administrators) and to know the SQL server password.

Related CVEs

Key Information

GHSA ID
GHSA-9533-g28x-xwf2
Published
March 24, 2022 12:00 AM
Last Modified
March 30, 2022 12:01 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 2, 2025 6:26 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.