McAfee Threat Intelligence Exchange (TIE) Server - Code Injection vulnerability
13Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 5.4epss 1.6%
probabilidade de exploração
1.6%top 27% das CVEs
exploração observada
nãonenhuma fonte reporta
Code Injection vulnerability in the ePolicy Orchestrator (ePO) extension in McAfee Threat Intelligence Exchange (TIE) Server 2.1.0 and earlier allows remote attackers to execute arbitrary HTML code to be reflected in the response web page via unspecified vector.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Produtos afetados
McAfee · Threat Intelligence Exchange (TIE) Server