CVE-2014-8521

EUVD-2014-8358
Cross-site scripting (XSS) vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:N/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Affected Products (NVD)
VendorProductVersion
mcafeenetwork_data_loss_prevention
𝑥
≤ 9.2.2
mcafeenetwork_data_loss_prevention
8.6
mcafeenetwork_data_loss_prevention
9.2.0
mcafeenetwork_data_loss_prevention
9.2.1
𝑥
= Vulnerable software versions