Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mcafee data loss prevention vulnerabilities and exploits
(subscribe to this query)
3.5
CVSSv2
CVE-2017-3948
Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScript into a user's browsing session.
Mcafee Data Loss Prevention Endpoint 10.0
Mcafee Data Loss Prevention Endpoint 10.0.100
Mcafee Data Loss Prevention Endpoint 10.0.230
Mcafee Data Loss Prevention Endpoint 10.0.200
Mcafee Data Loss Prevention Endpoint 10.0.250
3.5
CVSSv2
CVE-2017-3933
Embedding Script (XSS) in HTTP Headers vulnerability in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via a cross site request forgery attack.
Mcafee Network Data Loss Prevention 9.3.2
Mcafee Network Data Loss Prevention 9.3.3
Mcafee Network Data Loss Prevention 9.3.4
Mcafee Network Data Loss Prevention 9.3.0
Mcafee Network Data Loss Prevention 9.3.1
5
CVSSv2
CVE-2014-8520
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to obtain sensitive information via vectors related to open network ports.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
7.5
CVSSv2
CVE-2014-8522
The MySQL database in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not require a password, which makes it easier for remote malicious users to obtain access.
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention 9.2.1
5
CVSSv2
CVE-2014-8524
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not disable the autocomplete setting for the password and other fields, which allows remote malicious users to obtain sensitive information via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.0
5
CVSSv2
CVE-2014-8525
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote malicious users to obtain potentially sensitive information via script access to this cookie.
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
3.6
CVSSv2
CVE-2014-8527
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows local users to obtain sensitive information and affect integrity via vectors related to a "plain text password."
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
2.1
CVSSv2
CVE-2014-8528
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 logs session IDs, which allows local users to obtain sensitive information by reading the audit log.
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 9.2.0
2.1
CVSSv2
CVE-2014-8529
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 stores the SSH key in cleartext, which allows local users to obtain sensitive information via unspecified vectors.
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.0
7.5
CVSSv2
CVE-2014-8530
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to obtain sensitive information, affect integrity, or cause a denial of service via unknown vectors, related to simultaneous logins.
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »