Medium severity6.2NVD Advisory· Published Jun 13, 2018· Updated Jun 17, 2026
CVE-2017-3936
CVE-2017-3936
Description
OS Command Injection vulnerability in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, 5.3.1, 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows attackers to run arbitrary OS commands with limited privileges via not sanitizing the user input data before exporting it into a CSV format output.
Affected products
1- Range: 5.1
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.