CVE-2020-7303
4.1
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
Exploitability: 1.5 / Impact: 2.5
Source: NVD
Description
Cross Site scripting vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote user to trigger scripts to run in a user's browser via adding a new label.
Affected (3)
Products: Mcafee: Data Loss Prevention
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 11.3.0 to 11.3.28 |
References (2)
Source: trellixpsirt@trellix.com
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.