Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mcafee advanced threat defense vulnerabilities and exploits
(subscribe to this query)
4
CVSSv2
CVE-2019-3650
Information Disclosure vulnerability in McAfee Advanced Threat Defense (ATD before 4.8 allows remote authenticated malicious users to gain access to the atduser credentials via carefully constructed GET request extracting insecurely information stored in the database.
Mcafee Advanced Threat Defense
6.5
CVSSv2
CVE-2019-3651
Information Disclosure vulnerability in McAfee Advanced Threat Defense (ATD before 4.8 allows remote authenticated malicious users to gain access to ePO as an administrator via using the atduser credentials, which were too permissive.
Mcafee Advanced Threat Defense
6.5
CVSSv2
CVE-2019-3660
Improper Neutralization of HTTP requests in McAfee Advanced Threat Defense (ATD) before 4.8 allows remote authenticated malicious user to execute commands on the server remotely via carefully constructed HTTP requests.
Mcafee Advanced Threat Defense
5
CVSSv2
CVE-2019-3643
McAfee Web Gateway (MWG) earlier than 7.8.2.13 is vulnerable to a remote attacker exploiting CVE-2019-9511, potentially leading to a denial of service. This affects the scanning proxies.
Mcafee Web Gateway
Mcafee Active Response 2.0.1
Mcafee Active Response 2.1
Mcafee Active Response 2.2
Mcafee Active Response 2.3
Mcafee Active Response 2.4
Mcafee Active Response 2.0
Mcafee Enterprise Security Manager 10.2.0
Mcafee Enterprise Security Manager 10.3.4
Mcafee Enterprise Security Manager 10.4.0
Mcafee Enterprise Security Manager 11.0.0
Mcafee Enterprise Security Manager 11.1.0
Mcafee Enterprise Security Manager 11.1.1
Mcafee Enterprise Security Manager 11.1.2
Mcafee Enterprise Security Manager 11.1.3
Mcafee Enterprise Security Manager 11.2.0
Mcafee Advanced Threat Defense 4.0
Mcafee Advanced Threat Defense 4.2
Mcafee Advanced Threat Defense 4.4
Mcafee Advanced Threat Defense 4.6
Mcafee Active Response 1.0.0
Mcafee Active Response 1.1.0
5
CVSSv2
CVE-2019-3644
McAfee Web Gateway (MWG) earlier than 7.8.2.13 is vulnerable to a remote attacker exploiting CVE-2019-9517, potentially leading to a denial of service. This affects the scanning proxies.
Mcafee Web Gateway
Mcafee Active Response 2.0.1
Mcafee Active Response 2.1
Mcafee Active Response 2.2
Mcafee Active Response 2.3
Mcafee Active Response 2.4
Mcafee Active Response 2.0
Mcafee Enterprise Security Manager 10.2.0
Mcafee Enterprise Security Manager 10.3.4
Mcafee Enterprise Security Manager 10.4.0
Mcafee Enterprise Security Manager 11.0.0
Mcafee Enterprise Security Manager 11.1.0
Mcafee Enterprise Security Manager 11.1.1
Mcafee Enterprise Security Manager 11.1.2
Mcafee Enterprise Security Manager 11.1.3
Mcafee Enterprise Security Manager 11.2.0
Mcafee Advanced Threat Defense 4.0
Mcafee Advanced Threat Defense 4.2
Mcafee Advanced Threat Defense 4.4
Mcafee Advanced Threat Defense 4.6
Mcafee Active Response 1.0.0
Mcafee Active Response 1.1.0
7.5
CVSSv2
CVE-2017-4053
Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote malicious users to execute a command of their choice via a crafted HTTP request parameter.
Mcafee Advanced Threat Defense 3.10
Mcafee Advanced Threat Defense 3.8
Mcafee Advanced Threat Defense 3.4
Mcafee Advanced Threat Defense 3.6
6.5
CVSSv2
CVE-2017-4057
Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands.
Mcafee Advanced Threat Defense 3.10
Mcafee Advanced Threat Defense 3.8
Mcafee Advanced Threat Defense 3.4
Mcafee Advanced Threat Defense 3.6
5
CVSSv2
CVE-2017-4055
Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote malicious users to bypass ATD detection via loose enforcement of authentication and authorization.
Mcafee Advanced Threat Defense 3.10
Mcafee Advanced Threat Defense 3.8
Mcafee Advanced Threat Defense 3.4
Mcafee Advanced Threat Defense 3.6
7.5
CVSSv2
CVE-2017-4052
Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote malicious users to change or update any configuration settings, or gain administrator functionality via a crafted HTTP...
Mcafee Advanced Threat Defense 3.10
Mcafee Advanced Threat Defense 3.8
Mcafee Advanced Threat Defense 3.4
Mcafee Advanced Threat Defense 3.6
6.5
CVSSv2
CVE-2017-4054
Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to execute a command of their choice via a crafted HTTP request parameter.
Mcafee Advanced Threat Defense 3.10
Mcafee Advanced Threat Defense 3.8
Mcafee Advanced Threat Defense 3.4
Mcafee Advanced Threat Defense 3.6
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37884
CVE-2024-6003
remote
brute force
information disclosure
CVE-2024-27801
CVE-2024-30078
CVE-2024-31870
CVE-2024-6042
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »