CVE-2021-31835

Publication date

2021-10-22 11:05:11

Family

trellix

State

PUBLISHED

Description

Cross-Site Scripting vulnerability in McAfee ePolicy Orchestrator (ePO) prior to 5.10 Update 11 allows ePO administrators to inject arbitrary web script or HTML via a specific parameter where the administrators entries were not correctly sanitized.