Cross Site scripting vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote user to trigger scripts to run in a user's browser via adding a new label.
| Software | From | Fixed in |
|---|---|---|
| mcafee / data_loss_prevention | 11.3.0 | 11.3.28 |
| mcafee / data_loss_prevention | 11.4.0 | 11.4.200 |
| mcafee / data_loss_prevention | 11.5.0 | 11.5.3 |