Check: 2015-A-0129
Windows 2012 IAVM:
2015-A-0129
(in version v1 r30)
Title
McAfee Agent Clickjacking Vulnerability (Cat II impact)
Discussion
McAfee has released a security advisory addressing a vulnerability in McAfee Agent. McAfee Agent is the distributed component of McAfee ePolicy Orchestrator; it downloads and enforces policies, and executes client-side tasks such as deployment and updating. To exploit this vulnerability, an attacker would craft a malicious "clickjacking" page. If successfully exploited, the attacker would be able to access system information and compromise the system.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-60971
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |