Skip to main content

Vendor archive

mcafee CVEs

Beta · best-effort

599 CVEs tagged to vendor mcafee34 Critical, 202 High, 305 Medium, 58 Low, 0 Unrated.

CVE-2019-2816

Published Jul 23, 2019

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 1…

CVSS 4.8 · Medium

CVE-2019-2769

Published Jul 23, 2019

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12…

CVSS 5.3 · Medium

CVE-2019-2762

Published Jul 23, 2019

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12…

CVSS 5.3 · Medium

CVE-2019-3592

Published Jul 18, 2019

Privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3, allows local administrator users to potentially disable some McAfee processes by manipulating the MA dire…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3619

Published Jul 3, 2019

Information Disclosure vulnerability in the Agent Handler in McAfee ePolicy Orchestrator (ePO) 5.9.x and 5.10.0 prior to 5.10.0 update 4 allows remote unauthenticated attacker to…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3632

Published Jun 27, 2019

Directory Traversal vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to gain elevated privileges via special…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3631

Published Jun 27, 2019

Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially c…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3630

Published Jun 27, 2019

Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially c…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3629

Published Jun 27, 2019

Application protection bypass vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows unauthenticated user to impersonate system users…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3628

Published Jun 27, 2019

Privilege escalation in McAfee Enterprise Security Manager (ESM) 11.x prior to 11.2.0 allows authenticated user to gain access to a core system component via incorrect access cont…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3602

Published May 15, 2019

Cross Site Scripting (XSS) vulnerability in McAfee Network Security Manager (NSM) Prior to 9.1 Update 5 allows an authenticated administrator to embed an XSS in the administrator…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3586

Published May 15, 2019

Protection Mechanism Failure in the Firewall in McAfee Endpoint Security (ENS) 10.x prior to 10.6.1 May 2019 update allows context-dependent attackers to circumvent ENS protection…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3606

Published Mar 26, 2019

Data Leakage Attacks vulnerability in the web portal component when in an MDR pair in McAfee Network Security Management (NSM) 9.1 < 9.1.7.75 (Update 4) and 9.2 < 9.2.7.31 Update2…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3597

Published Mar 26, 2019

Authentication Bypass vulnerability in McAfee Network Security Manager (NSM) 9.1 < 9.1.7.75.2 and 9.2 < 9.2.7.31 (9.2 Update 2) allows unauthenticated users to gain administrator…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3615

Published Mar 12, 2019

Data Leakage Attacks vulnerability in the web interface in McAfee Database Security prior to the 4.6.6 March 2019 update allows local users to expose passwords via incorrectly aut…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3599

Published Feb 28, 2019

Information Disclosure vulnerability in Remote logging (which is disabled by default) in McAfee Agent (MA) 5.x allows remote unauthenticated users to access sensitive information…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3598

Published Feb 28, 2019

Buffer Access with Incorrect Length Value in McAfee Agent (MA) 5.x allows remote unauthenticated users to potentially cause a denial of service via specifically crafted UDP packet…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-3582

Published Feb 28, 2019

Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allows local users to gain elevated privileges via a specific s…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort
Showing 251-275 of 599 CVEsPage 11 of 24