First published: Fri Jun 23 2017(Updated: )
Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScript into a user's browsing session.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Data Loss Prevention Endpoint | =10.0 | |
Mcafee Data Loss Prevention Endpoint | =10.0.100 | |
Mcafee Data Loss Prevention Endpoint | =10.0.200 | |
Mcafee Data Loss Prevention Endpoint | =10.0.230 | |
Mcafee Data Loss Prevention Endpoint | =10.0.250 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.