Privilege escalation vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows a low privileged remote attacker to create new rule sets via incorrect validation of user credentials.
2020-08-13T03:15:14.820
2024-11-21T05:37:01.783
Modified
CVSSv3.1: 6.7 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:P/A:N
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | mcafee | data_loss_prevention | < 11.3.28 | Yes |
| Application | mcafee | data_loss_prevention | < 11.4.200 | Yes |
| Application | mcafee | data_loss_prevention | < 11.5.3 | Yes |