Vulnerability Description
The ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 9.3 Patch 4 Hotfix 16 (9.3.416.4) allows remote authenticated users to obtain sensitive information, modify the database, or possibly have other unspecified impact via a crafted URL.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Data Loss Prevention Endpoint | <= 9.3.400 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/73397
- https://kc.mcafee.com/corporate/index?page=content&id=SB10111Vendor Advisory
- http://www.securityfocus.com/bid/73397
- https://kc.mcafee.com/corporate/index?page=content&id=SB10111Vendor Advisory
FAQ
What is CVE-2015-2758?
CVE-2015-2758 is a vulnerability with a CVSS score of 6.5 (MEDIUM). The ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 9.3 Patch 4 Hotfix 16 (9.3.416.4) allows remote authenticated users to obtain sensitive information, modify the database, or pos...
How severe is CVE-2015-2758?
CVE-2015-2758 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-2758?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Data Loss Prevention Endpoint.