Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mcafee agent vulnerabilities and exploits
(subscribe to this query)
3.3
CVSSv3
CVE-2021-31839
Improper privilege management vulnerability in McAfee Agent for Windows before 5.7.3 allows a local user to modify event information in the MA event folder. This allows a local user to either add false events or remove events from the event logs prior to them being sent to the eP...
Mcafee Agent
5.3
CVSSv3
CVE-2015-8987
Man-in-the-middle (MitM) attack vulnerability in non-Mac OS agents in McAfee (now Intel Security) Agent (MA) 4.8.0 patch 2 and previous versions allows malicious users to make a McAfee Agent talk with another, possibly rogue, ePO server via McAfee Agent migration to another ePO s...
Mcafee Agent
9.8
CVSSv3
CVE-2018-6703
Use After Free in Remote logging (which is disabled by default) in McAfee McAfee Agent (MA) 5.x before 5.6.0 allows remote unauthenticated malicious users to cause a Denial of Service and potentially a remote code execution via a specially crafted HTTP header sent to the logging ...
Mcafee Agent
4.4
CVSSv3
CVE-2020-7253
Improper access control vulnerability in masvc.exe in McAfee Agent (MA) before 5.6.4 allows local users with administrator privileges to disable self-protection via a McAfee supplied command-line utility.
Mcafee Agent
7.2
CVSSv3
CVE-2022-1258
A blind SQL injection vulnerability in the ePolicy Orchestrator (ePO) extension of MA before 5.7.6 can be exploited by an authenticated administrator on ePO to perform arbitrary SQL queries in the back-end database, potentially leading to command execution on the server.
Mcafee Agent
5.5
CVSSv3
CVE-2020-7343
Missing Authorization vulnerability in McAfee Agent (MA) for Windows before 5.7.1 allows local users to block McAfee product updates by manipulating a directory used by MA for temporary files. The product would continue to function with out-of-date detection files.
Mcafee Agent
NA
CVE-2013-3627
FrameworkService.exe in McAfee Framework Service in McAfee Managed Agent (MA) prior to 4.5.0.1927 and 4.6 prior to 4.6.0.3258 allows remote malicious users to cause a denial of service (service crash) via a malformed HTTP request.
Mcafee Agent
6.7
CVSSv3
CVE-2019-3592
Privilege escalation vulnerability in McAfee Agent (MA) prior to 5.6.1 HF3, allows local administrator users to potentially disable some McAfee processes by manipulating the MA directory control and placing a carefully constructed file in the MA directory.
Mcafee Agent
7.3
CVSSv3
CVE-2019-3613
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) before 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.
Mcafee Agent
7.8
CVSSv3
CVE-2022-0166
A privilege escalation vulnerability in the McAfee Agent before 5.7.5. McAfee Agent uses openssl.cnf during the build process to specify the OPENSSLDIR variable as a subdirectory within the installation directory. A low privilege user could have created subdirectories and execute...
Mcafee Agent
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »