CVE-2013-4883 | McAfee ePolicy Orchestrator 4.6.6 Build 176 sysDetPanelQry.do uid/orion.user.security.token/ajaxMode Reflected cross site scripting (KB78824 / EDB-26807)
A vulnerability was found in McAfee ePolicy Orchestrator 4.6.6 Build 176. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file ComputerMgmt/sysDetPanelQry.do. The manipulation of the argument uid/orion.user.security.token/ajaxMode as part of GET Request leads to cross site scripting (Reflected).
This vulnerability is known as CVE-2013-4883. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.