CVE-2022-0859: ePO database restoration vulnerability
McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a local attacker to point an ePO server to an arbitrary SQL server during the restoration of the ePO server. To achieve this the attacker would have to be logged onto the server hosting the ePO server (restricted to administrators) and to know the SQL server password.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-0859?
CVE-2022-0859 is a vulnerability in McAfee Enterprise ePolicy Orchestrator (ePO) that allows a local attacker to point the ePO server to an arbitrary SQL server during restoration.
What is the severity of CVE-2022-0859?
The severity of CVE-2022-0859 is medium with a CVSS score of 6.4.
How does CVE-2022-0859 affect McAfee ePolicy Orchestrator?
CVE-2022-0859 affects McAfee ePolicy Orchestrator versions prior to 5.10 Update 13.
How can a local attacker exploit CVE-2022-0859?
A local attacker can exploit CVE-2022-0859 by logging onto the server hosting the ePO server and pointing it to an arbitrary SQL server during restoration.
Is there a fix available for CVE-2022-0859?
Yes, a fix for CVE-2022-0859 is available in McAfee ePolicy Orchestrator 5.10 Update 13.