← Back to browse · API

CVE-2018-6703

Severity
CRITICAL
CVSS
9.8
EPSS
0.03233
Risk score
40.33
CISA KEV
No
PoC
No
Published
2018-12-11
Modified
2024-08-05
First seen
2026-08-07
Aliases
EUVD-2018-18450, GHSA-3G76-65RH-62W4
Products
McAfee,LLC:McAfee Agent 5.x <5.6.0
Sources
euvd EUVD-2018-18450

Description

Use After Free in Remote logging (which is disabled by default) in McAfee McAfee Agent (MA) 5.x prior to 5.6.0 allows remote unauthenticated attackers to cause a Denial of Service and potentially a remote code execution via a specially crafted HTTP header sent to the logging service.

References