← Back

CVE-2020-7300

nvd nist
Published: Aug 12, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Exploitability: 2.8 / Impact: 3.4
Source: NVD

Description

Improper Authorization vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attackers to change the configuration when logged in with view only privileges via carefully constructed HTTP post messages.

Affected (3)

1 product
Data Loss Prevention
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Mcafee
From 11.3.0 to 11.3.28
From 11.4.0 to 11.4.200
From 11.5.0 to 11.5.3

References (2)

Timeline

No history available yet.