CVE-2013-4883 | McAfee ePolicy Orchestrator up to 4.6.6 Build 176 sysDetPanelSummary.do uid/orion.user.security.token/ajaxMode Reflected cross site scripting (KB78824 / EDB-26807)
A vulnerability was found in McAfee ePolicy Orchestrator up to 4.6.6 Build 176. It has been rated as problematic. Affected by this issue is some unknown functionality of the file ComputerMgmt/sysDetPanelSummary.do. The manipulation of the argument uid/orion.user.security.token/ajaxMode as part of GET Request leads to cross site scripting (Reflected).
This vulnerability is handled as CVE-2013-4883. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.