AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-0858

MEDIUM · CVSS 4.3 EPSS 0.80%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-0858
Severity
MEDIUM
CVSS
4.3
EPSS
0.80%

Original NVD Description

A cross-site scripting (XSS) vulnerability in McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a remote attacker to potentially obtain access to an ePO administrator's session by convincing the attacker to click on a carefully crafted link. This would lead to limited ability to alter some information in ePO due to the area of the User Interface the vulnerability is present in.