VYPR
Low severity3.7NVD Advisory· Published Apr 2, 2018· Updated Jun 17, 2026

CVE-2018-6659

CVE-2018-6659

Description

Reflected Cross-Site Scripting vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.2, 5.3.1, 5.3.0 and 5.9.0 allows remote authenticated users to exploit an XSS issue via not sanitizing the user input.

Affected products

6
  • cpe:2.3:a:mcafee:epolicy_orchestrator:5.3.0:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:mcafee:epolicy_orchestrator:5.9.0:*:*:*:*:*:*:*
    • (no CPE)range: 5.3.0, 5.3.1, 5.3.2, 5.9.0
    • (no CPE)range: 5.3.2

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.