Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
DLP ePO extension - Cross-site request forgery
Vulnerability Description
Cross site request forgery vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attacker to embed a CRSF script via adding a new label.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
McAfee Data Loss Prevention ePO extension 跨站请求伪造漏洞
Vulnerability Description
McAfee Data Loss Prevention(DLP)是美国迈克菲(McAfee)公司的一套数据丢失防护套件,它包含McAfee DLP Monitor、McAfee DLP Endpoint等组件,并提供事件管理和报告、同步本地和云DLP策略等功能。ePO extension是使用在其中的一个集中式安全管理扩展程序。 McAfee DLP ePO extension 11.5.3之前版本中存在跨站请求伪造漏洞。攻击者可利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A