Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-2205
Description:The Import and Export Framework in McAfee ePolicy Orchestrator (ePO) before 4.6.7 Hotfix 940148 allows remote authenticated users with permissions to add dashboards to read arbitrary files by importing a crafted XML file, related to an XML External Entity (XXE) issue.
Test IDs: 1.3.6.1.4.1.25623.1.0.103925  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-2205
BugTraq ID: 65771
http://www.securityfocus.com/bid/65771
Bugtraq: 20140225 [RT-SA-2014-001] McAfee ePolicy Orchestrator: XML External Entity Expansion in Dashboard (Google Search)
http://www.securityfocus.com/archive/1/531255/100/0/threaded
https://www.redteam-pentesting.de/advisories/rt-sa-2014-001.txt
http://secunia.com/advisories/57114




© 1998-2025 E-Soft Inc. All rights reserved.