Medium severity4.6NVD Advisory· Published Aug 12, 2020· Updated Jun 17, 2026
CVE-2020-7300
CVE-2020-7300
Description
Improper Authorization vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attackers to change the configuration when logged in with view only privileges via carefully constructed HTTP post messages.
Affected products
3- cpe:2.3:a:mcafee:data_loss_prevention:*:*:*:*:*:*:*:*Range: >=11.3.0,<11.3.28
- Range: <11.5.3
- McAfee/DLP ePO extensionv5Range: 11.3
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.