CVE-2012-4599: Critical severity mcafee smartfilter vulnerability
McAfee SmartFilter Administration, and SmartFilter Administration Bess Edition, before 4.2.1.01 does not require authentication for access to the JBoss Remote Method Invocation (RMI) interface, which allows remote attackers to execute arbitrary code via a crafted .war file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4599?
CVE-2012-4599 is rated as a critical vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2012-4599?
To fix CVE-2012-4599, update McAfee SmartFilter Administration to version 4.2.1.01 or later.
Which software versions are affected by CVE-2012-4599?
CVE-2012-4599 affects McAfee SmartFilter Administration and SmartFilter Administration Bess Edition versions up to 4.2.1.
Can CVE-2012-4599 be exploited remotely?
Yes, CVE-2012-4599 can be exploited remotely by attackers who can access the unsecured JBoss RMI interface.
What type of attack is possible with CVE-2012-4599?
CVE-2012-4599 allows attackers to execute arbitrary code on the server by deploying a crafted .war file.