Description
Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows remote attackers trigger server-side DNS requests to arbitrary domains via carefully constructed XML files loaded by an ePO administrator.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28456 | Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows remote attackers trigger server-side DNS requests to arbitrary domains via carefully constructed XML files loaded by an ePO administrator. |
References
History
Tue, 17 Sep 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extension | Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extension |
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2024-09-17T02:21:36.244Z
Reserved: 2020-01-21T00:00:00.000Z
Link: CVE-2020-7329
No data.
Status : Modified
Published: 2020-11-11T10:15:11.257
Modified: 2024-11-21T05:37:04.387
Link: CVE-2020-7329
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD