CVE-2020-7329

Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows remote attackers trigger server-side DNS requests to arbitrary domains via carefully constructed XML files loaded by an ePO administrator.
References
Configurations

Configuration 1

cpe:2.3:a:mcafee:mvision_endpoint:*:*:*:*:*:*:*:*

Information

Published : 2020-11-11 10:15

Updated : 2020-11-20 03:12


NVD link : CVE-2020-7329

Mitre link : CVE-2020-7329

Products Affected
No products.
CWE
CWE-918

Server-Side Request Forgery (SSRF)