mcafee

602 tracked vulnerabilities.

CVE-2022-0861 LOW
McAfee ePolicy Orchestrator < 5.10.0 - Authenticated XML External Entity Injection via Extension Import
Mar 23, 2022
CVSS 3.5
EPSS 0.00
CVE-2022-0859 MEDIUM
McAfee ePolicy Orchestrator < 5.10 Update 13 - Authenticated SQL Server Redirection via Server Restoration
Mar 23, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-0858 MEDIUM
McAfee ePolicy Orchestrator < 5.10 Update 13 - Cross-Site Scripting
Mar 23, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-0857 MEDIUM
McAfee ePolicy Orchestrator < 5.10 Update 13 - Reflected Cross-Site Scripting
Mar 23, 2022
CVSS 5.4
EPSS 0.00
CVE-2022-0842 MEDIUM
McAfee ePolicy Orchestrator < 5.10.0 - Authenticated Blind SQL Injection
Mar 23, 2022
CVSS 5.4
EPSS 0.00
CVE-2022-0815 MEDIUM
McAfee WebAdvisor < 8.1.0.1895 - Improper Access Control
Mar 10, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-0166 HIGH
McAfee Agent <5.7.5 - Privilege Escalation
Jan 19, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-0129 HIGH
McAfee TechCheck <4.0.0.2 - Privilege Escalation
Jan 11, 2022
CVSS 7.4
EPSS 0.00
CVE-2021-4088 HIGH
McAfee Data Loss Prevention 11.6.401 11.7.0-11.7.100 11.8.0-11.8.99 - Authenticated SQL Injection
Jan 24, 2022
CVSS 8.4
EPSS 0.01
CVE-2021-31854 HIGH
McAfee Agent < 5.7.5 - OS Command Injection via File Cleanup Execution
Jan 19, 2022
CVSS 7.7
EPSS 0.00
CVE-2021-31833 HIGH
McAfee Application and Change Control < 8.3.4 - Privilege Escalation via Binary Renaming
Jan 04, 2022
CVSS 7.1
EPSS 0.00
CVE-2021-4038 MEDIUM
McAfee Network Security Manager < 10.1.7.48 - Authenticated Stored Cross-Site Scripting via Custom Rule HTML Injection
Dec 09, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-31850 MEDIUM
McAfee Database Security < 4.8.4 - Authenticated Denial of Service and Arbitrary File Write via Archiving Configuration
Dec 08, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-31852 MEDIUM
McAfee Policy Auditor < 6.5.2 - Unauthenticated Reflected Cross-Site Scripting via UID Parameter
Nov 23, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-31851 MEDIUM
McAfee Policy Auditor < 6.5.2 - Unauthenticated Reflected Cross-Site Scripting via profileNodeID Parameter
Nov 23, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-31853 HIGH
McAfee Drive Encryption < 7.3.0 HF2 - DLL Search Order Hijacking
Nov 10, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-31849 HIGH
McAfee Data Loss Prevention Endpoint 11.6.0-11.6.400 - Authenticated SQL Injection via User Management Section
Nov 01, 2021
CVSS 8.4
EPSS 0.00
CVE-2021-31848 HIGH
McAfee Data Loss Prevention Endpoint 11.6.0-11.6.400 - Stored Cross-Site Scripting in Case Management
Nov 01, 2021
CVSS 8.4
EPSS 0.00
CVE-2021-23877 MEDIUM
McAfee Total Protection < 16.0.34 - Privilege Escalation via Trial Installer Temporary File Replacement
Oct 26, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-31835 MEDIUM
McAfee ePolicy Orchestrator < 5.10 Update 11 - Authenticated Stored Cross-Site Scripting
Oct 22, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-31834 MEDIUM
McAfee ePolicy Orchestrator < 5.10.0 Update 11 - Stored Cross-Site Scripting via Administrator Input Parameters
Oct 22, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-23893 HIGH
McAfee Drive Encryption < 7.3.0 - Privilege Escalation via Unutilized Memory Buffer
Oct 01, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-31847 HIGH
McAfee Agent < 5.7.4 - DLL Preloading Privilege Escalation via Unprotected Repair Directory
Sep 22, 2021
CVSS 8.2
EPSS 0.00
CVE-2021-31841 HIGH
McAfee Agent < 5.7.4 - DLL Sideloading via Unsigned DLL
Sep 22, 2021
CVSS 8.2
EPSS 0.00
CVE-2021-31836 MEDIUM
McAfee Agent for Windows < 5.7.4 - Improper Privilege Management via maconfig Utility
Sep 22, 2021
CVSS 5.6
EPSS 0.00