mcafee
602 tracked vulnerabilities.
CVE-2020-2604
HIGH
Oracle Java SE 7u241/8u231/11.0.5/13.0.1 & Embedded 8u231 - RCE via Serialization
Jan 15, 2020
CVSS 8.1
EPSS 0.02
CVE-2020-2593
MEDIUM
Oracle Java SE <13.0.1 - Unauth Update
Jan 15, 2020
CVSS 4.8
EPSS 0.01
CVE-2020-2590
LOW
Oracle Java SE <13.0.1 - Unauthorized Update
Jan 15, 2020
CVSS 3.7
EPSS 0.00
CVE-2020-2583
LOW
Oracle JDK 7u241, 8u231, 11.0.5, 13.0.1 & Java SE Embedded 8u231 - DoS via Serialization
Jan 15, 2020
CVSS 3.7
EPSS 0.01
CVE-2019-3588
MEDIUM
McAfee VirusScan Enterprise < 8.8 Patch 14 - Privilege Escalation via On-Access Scan Threat Alert Window
Jun 10, 2020
CVSS 6.3
EPSS 0.00
CVE-2019-3585
HIGH
McAfee VirusScan Enterprise 8.8 - Privilege Escalation via On-Access Scan Messages
Jun 10, 2020
CVSS 7.0
EPSS 0.00
CVE-2019-3613
MEDIUM
McAfee Agent 5.0.0-5.0.6 - DLL Search Order Hijacking via Compromised Folder Execution
Jun 10, 2020
CVSS 5.9
EPSS 0.00
CVE-2019-3617
HIGH
McAfee Total Protection < 4.6 - Privilege Escalation via Temporary File Protection Bypass
Jun 10, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-3670
HIGH
McAfee Web Advisor < 8.0.34745 - Unauthenticated Remote Code Execution via Cross-Site Scripting
Feb 24, 2020
CVSS 8.0
EPSS 0.01
CVE-2019-3667
MEDIUM
McAfee Tech Check < 3.0.0.17 - DLL Search Order Hijacking
Dec 11, 2019
CVSS 6.6
EPSS 0.00
CVE-2019-3666
MEDIUM
McAfee Web Advisor <4.1.1.48 - Open Redirect
Dec 03, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-3665
MEDIUM
McAfee WebAdvisor < 4.1.1.48 - Unauthenticated Code Injection via Crafted Website
Dec 03, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-3654
MEDIUM
McAfee Client Proxy < 3.0.0 - Authentication Bypass via Client-Side Authorization Key Generation
Nov 22, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-3663
CRITICAL
McAfee Advanced Threat Defense < 4.8 - Unprotected Storage of Credentials
Nov 14, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-3662
MEDIUM
McAfee Advanced Threat Defense < 4.8 - Authenticated Path Traversal via HTTP Request
Nov 14, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-3661
HIGH
McAfee Advanced Threat Defense < 4.8 - Authenticated SQL Injection via Time-Based Payloads
Nov 14, 2019
CVSS 8.1
EPSS 0.00
CVE-2019-3640
MEDIUM
McAfee Data Loss Prevention 11.0.0-11.3.x - Cleartext Transmission of LDAP Credentials via ePO Extension
Nov 14, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-3660
HIGH
McAfee ATD <4.8 - Command Injection
Nov 13, 2019
CVSS 8.4
EPSS 0.01
CVE-2019-3651
HIGH
McAfee Advanced Threat Defense < 4.8 - Authenticated Privilege Escalation via atduser Credentials
Nov 13, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-3650
MEDIUM
McAfee Advanced Threat Defense < 4.8 - Authenticated Information Disclosure via Database Query
Nov 13, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-3649
MEDIUM
McAfee Advanced Threat Defense < 4.8 - Authenticated Information Disclosure via Log File Extraction
Nov 13, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-3641
MEDIUM
McAfee Threat Intelligence Exchange Server 3.0.0 - Authenticated Reputation Data Modification via API
Nov 13, 2019
CVSS 4.5
EPSS 0.00
CVE-2019-3648
MEDIUM
McAfee Total Protection < 16.0.R22 - Privilege Escalation via Untrusted Search Path
Nov 13, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-3636
HIGH
McAfee Total Protection < 16.0.R21 - Cleartext Storage of Sensitive Information in Windows Registry
Oct 28, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-2975
MEDIUM
Oracle JDK 8u221, 11.0.4, 13 & Java SE Embedded 8u221 - DoS & Data Manipulation via Scripting
Oct 16, 2019
CVSS 4.8
EPSS 0.00
Products
epolicy_orchestrator 86
web_gateway 41
endpoint_security 37
network_data_loss_prevention 31
virusscan_enterprise 29
advanced_threat_defense 26
data_loss_prevention_endpoint 26
total_protection 26
agent 25
email_gateway 20
network_security_manager 19
gateway 13
data_loss_prevention 12
scan_engine 12
email_and_web_security 10
mcafee_agent 10
virusscan 10
antivirus_engine 9
enterprise_security_manager 9
policy_auditor 9
database_security 8
true_key 8
Network Data Loss Prevention (NDLP) 7
active_response 7
application_control 7
security_scan_plus 7
threat_intelligence_exchange_server 7
application_and_change_control 6
e-business_server 6
enterprise_mobility_manager 6
Quick Filters