CVE-2016-8011: XSS
Published Mar 14, 2017
·Updated
Cross-site scripting vulnerability in Intel Security McAfee Endpoint Security (ENS) Web Control before 10.2.0.408.10 allows attackers to inject arbitrary web script or HTML via a crafted web site.
Affected Software
1 affected component
Intel Security McAfee Endpoint Security Web Control<=10.2.0.408
Remediation
Event History
Mar 14, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-8011?
CVE-2016-8011 has been rated as moderate severity due to its potential impact on users accessing malicious websites.
2
How do I fix CVE-2016-8011?
To fix CVE-2016-8011, upgrade McAfee Endpoint Security Web Control to version 10.2.0.408 or later.
3
What systems are affected by CVE-2016-8011?
CVE-2016-8011 affects Intel Security McAfee Endpoint Security Web Control versions prior to 10.2.0.408.
4
What type of vulnerability is CVE-2016-8011?
CVE-2016-8011 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web script.
5
Can CVE-2016-8011 be exploited remotely?
Yes, CVE-2016-8011 can be exploited remotely by attackers through crafted websites.