Improper Authorization vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attackers to change the configuration when logged in with view only privileges via carefully constructed HTTP post messages.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10326 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-08-12 15:15
Updated : 2022-07-01 09:46
NVD link : CVE-2020-7300
Mitre link : CVE-2020-7300
JSON object : View
CWE
CWE-863
Incorrect Authorization
Products Affected
mcafee
- data_loss_prevention