ZeroHour

CVE-2020-7300

CVSS 3.1
6.3 medium
EPSS
<1%p46
Published
()
Modified
Description

Improper Authorization vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attackers to change the configuration when logged in with view only privileges via carefully constructed HTTP post messages.

Vendors
mcafee
Products
data loss prevention
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.