CVE-2015-1618Sensitive Information Exposure in Data Loss Prevention Endpoint

Severity
4.0MEDIUMNVD
EPSS
0.2%
top 60.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 17
Latest updateMay 17

Description

The ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 9.3.400 allows remote authenticated users to obtain sensitive password information via a crafted URL.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-532q-828w-j62v: The ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 92022-05-17
CVEList
CVE-2015-1618: The ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 92015-02-17
CVE-2015-1618 — Sensitive Information Exposure | cvebase