Unrated severityNVD Advisory· Published Sep 22, 2015· Updated Jun 17, 2026
CVE-2015-7310
CVE-2015-7310
Description
McAfee Enterprise Security Manager (ESM), Enterprise Security Manager/Log Manager (ESMLM), and Enterprise Security Manager/Receiver (ESMREC) before 9.3.2MR18, 9.4.x before 9.4.2MR8, and 9.5.x before 9.5.0MR7 allow remote authenticated users to execute arbitrary OS commands via a crafted filename, which is not properly handled when downloading the file.
Affected products
10cpe:2.3:a:mcafee:enterprise_security_manager\/log_manager:*:mr17:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mcafee:enterprise_security_manager\/log_manager:*:mr17:*:*:*:*:*:*range: <=9.3.2
- cpe:2.3:a:mcafee:enterprise_security_manager\/log_manager:*:mr6:*:*:*:*:*:*range: <=9.5.0
- cpe:2.3:a:mcafee:enterprise_security_manager\/log_manager:*:mr7:*:*:*:*:*:*range: <=9.4.2
cpe:2.3:a:mcafee:enterprise_security_manager:*:mr17:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:mcafee:enterprise_security_manager:*:mr17:*:*:*:*:*:*range: <=9.3.2
- cpe:2.3:a:mcafee:enterprise_security_manager:*:mr6:*:*:*:*:*:*range: <=9.5.0
- cpe:2.3:a:mcafee:enterprise_security_manager:*:mr7:*:*:*:*:*:*range: <=9.4.2
- (no CPE)range: <9.3.2MR18, <9.4.2MR8, <9.5.0MR7
cpe:2.3:a:mcafee:enterprise_security_manager\/receiver:*:mr17:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mcafee:enterprise_security_manager\/receiver:*:mr17:*:*:*:*:*:*range: <=9.3.2
- cpe:2.3:a:mcafee:enterprise_security_manager\/receiver:*:mr6:*:*:*:*:*:*range: <=9.5.0
- cpe:2.3:a:mcafee:enterprise_security_manager\/receiver:*:mr7:*:*:*:*:*:*range: <=9.4.2
Patches
Vulnerability mechanics
References
2- kc.mcafee.com/corporate/indexnvdVendor Advisory
- www.securitytracker.com/id/1033654nvd
News mentions
0No linked articles in our index yet.