← Back

CVE-2020-7304

nvd nist
Published: Aug 13, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.6
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Exploitability: 2.1 / Impact: 5.5
Source: NVD

Description

Cross site request forgery vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attacker to embed a CRSF script via adding a new label.

Affected (3)

1 product
Data Loss Prevention
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Mcafee
From 11.3.0 to 11.3.28
From 11.4.0 to 11.4.200
From 11.5.0 to 11.5.3

References (2)

Timeline

No history available yet.