CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.4. It may be remotely exploitable.
CVE
CVE-2021-31848
Severity
HIGH
CVSS
8.4
EPSS
0.79%
Original NVD Description
Cross site scripting (XSS) vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.7.100 allows a remote attacker to highjack an active DLP ePO administrator session by convincing the logged in administrator to click on a carefully crafted link in the case management part of the DLP ePO extension.
Related CVEs
Other vulnerabilities affecting the same vendor(s)