Article

McAfee plugs flaw

SearchSecurity.com Staff

A flaw in McAfee's E-Business Server could be exploited to cause a DoS attack or compromise a vulnerable system.

The vulnerability affects versions 8.5.2 and prior on Microsoft Windows, according to an advisory issued by Danish vulnerability clearinghouse, Secunia.

    Requires Free Membership to View

Secunia rated the vulnerability "moderately critical" because it can only be exploited from a local network.

McAfee encouraged customers to upgrade to version 8.5.3.

"When the server processes this malicious traffic, the service will interrupt normal functioning of the server and may execute code with the same privileges as the LOCAL_SYSTEM service," McAfee said in its advisory.

McAfee said correctly defined firewall configurations greatly reduces the risk of the issue.

The flaw was discovered by Leon Juranic of Croatian-based security firm, Infigo.


There are Comments. Add yours.

 
TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: