Skip to main content

Vendor archive

mcafee CVEs

Beta · best-effort

599 CVEs tagged to vendor mcafee34 Critical, 202 High, 305 Medium, 58 Low, 0 Unrated.

CVE-2020-7264

Published May 8, 2020

Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users to delete files the user would otherwise not have…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-2754

Published Apr 15, 2020

Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u241, 11.0.6 and 14; Java SE Em…

CVSS 3.7 · Low

CVE-2020-7255

Published Apr 15, 2020

Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to ga…

CVSS 3.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-7250

Published Apr 15, 2020

Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows authenticated local user to potentially gain an…

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-7277

Published Apr 15, 2020

Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows local users to stop certain McAfee ENS process…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7276

Published Apr 15, 2020

Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows administrator users to access policy s…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7275

Published Apr 15, 2020

Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local us…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7274

Published Apr 15, 2020

Privilege escalation vulnerability in McTray.exe in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to spawn unrelated processes wi…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7273

Published Apr 15, 2020

Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7261

Published Apr 15, 2020

Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endp…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7259

Published Apr 15, 2020

Exploitation of Privilege/Trust vulnerability in file in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to bypass local security protection…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7257

Published Apr 15, 2020

Privilege escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to cause the deletion and creation of file…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7278

Published Apr 15, 2020

Exploiting incorrectly configured access control security levels vulnerability in ENS Firewall in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 and 10.6.1…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7263

Published Apr 1, 2020

Improper access control vulnerability in ESconfigTool.exe in McAfee Endpoint Security (ENS) for Windows all current versions allows local administrator to alter ENS configuration…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7258

Published Mar 18, 2020

Cross site scripting vulnerability in McAfee Network Security Management (NSM) Prior to 9.1 update 6 Mar 2020 Update allows attackers to unspecified impact via unspecified vectors.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7256

Published Mar 18, 2020

Cross site scripting vulnerability in McAfee Network Security Management (NSM) Prior to 9.1 update 6 Mar 2020 Update allows attackers to unspecified impact via unspecified vectors.

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7254

Published Mar 12, 2020

Privilege Escalation vulnerability in the command line interface in McAfee Advanced Threat Defense (ATD) 4.x prior to 4.8.2 allows local users to execute arbitrary code via improp…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7253

Published Mar 12, 2020

Improper access control vulnerability in masvc.exe in McAfee Agent (MA) prior to 5.6.4 allows local users with administrator privileges to disable self-protection via a McAfee sup…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 176-200 of 599 CVEsPage 8 of 24