Mcafee Epolicy Orchistrator vulnerabilities
2 known vulnerabilities affecting mcafee/epolicy_orchistrator.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2020-7318MEDIUMCVSS 4.3PoC≥ unspecified, < 5.10.9 update 92020-10-14
CVE-2020-7318 [MEDIUM] CWE-79 CVE-2020-7318: Cross-Site Scripting vulnerability in McAfee ePolicy Orchestrator (ePO) prior to 5.10.9 Update 9 all
Cross-Site Scripting vulnerability in McAfee ePolicy Orchestrator (ePO) prior to 5.10.9 Update 9 allows administrators to inject arbitrary web script or HTML via multiple parameters where the administrator's entries were not correctly sanitized.
cvelistv5nvd
CVE-2020-7317MEDIUMCVSS 4.3≥ unspecified, < 5.10.9 update 92020-10-14
CVE-2020-7317 [MEDIUM] CWE-79 CVE-2020-7317: Cross-Site Scripting vulnerability in McAfee ePolicy Orchistrator (ePO) prior to 5.10.9 Update 9 all
Cross-Site Scripting vulnerability in McAfee ePolicy Orchistrator (ePO) prior to 5.10.9 Update 9 allows administrators to inject arbitrary web script or HTML via parameter values for "syncPointList" not being correctly sanitsed.
cvelistv5nvd