### [CVE-2018-6672](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6672) ![](https://img.shields.io/static/v1?label=Product&message=ePolicy%20Orchestrator%20(ePO)&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=5.3.0%20through%205.3.35.3.3%20with%20hotfix%20EPO5xHF1229850%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Information%20disclosure%20vulnerability&color=brighgreen) ### Description Information disclosure vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.0 through 5.3.3 and 5.9.0 through 5.9.1 allows authenticated users to view sensitive information in plain text format via unspecified vectors. ### POC #### Reference - https://kc.mcafee.com/corporate/index?page=content&id=SB10240 - https://kc.mcafee.com/corporate/index?page=content&id=SB10240 #### Github No PoCs found on GitHub currently.