Mcafee McAfee ePolicy Orchistrator(ePO)是美国迈克菲(Mcafee)公司的一套可扩展的安全管理软件。该软件可对终端、网络、内容安全和合规解决方案实现集中的简化管理。 McAfee ePolicy Orchestrator (ePO) prior to 5.10 Update 10 存在跨站脚本漏洞,该漏洞允许管理员通过多个参数注入任意web脚本或HTML,而管理员的条目没有被正确地清理。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| McAfee,LLC | McAfee ePolicy Orchestrator (ePO) | unspecified ~ 5.10 CU 10 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-23890 | 6.5 MEDIUM | McAfee ePO Information Leak vulnerability |
| CVE-2021-23888 | 6.3 MEDIUM | McAfee ePO unvalidated URL redirect vulnerability |
No comments yet