VYPR
Medium severity6.8NVD Advisory· Published Jul 3, 2019· Updated Jun 17, 2026

CVE-2019-3619

CVE-2019-3619

Description

Information Disclosure vulnerability in the Agent Handler in McAfee ePolicy Orchestrator (ePO) 5.9.x and 5.10.0 prior to 5.10.0 update 4 allows remote unauthenticated attacker to view sensitive information in plain text via sniffing the traffic between the Agent Handler and the SQL server.

Affected products

8
  • cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_1:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_2:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.10.0:update_3:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.0:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.1:*:*:*:*:*:*:*
    • (no CPE)range: 5.9.x and 5.10.0 prior to 5.10.0 update 4
  • McAfee, LLC/McAfee ePolicy Orchestrator (ePO)v5
    Range: 5.9.x and 5.10.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.