Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
security agent vulnerabilities and exploits
(subscribe to this query)
7.1
CVSSv3
CVE-2019-15627
Versions 10.0, 11.0 and 12.0 of the Trend Micro Deep Security Agent are vulnerable to an arbitrary file delete attack, which may lead to availability impact. Local OS access is required. Please note that only Windows agents are affected.
Trendmicro Deep Security 10.0
Trendmicro Deep Security 11.0
Trendmicro Deep Security 12.0
5.1
CVSSv3
CVE-2016-3984
The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) prior to 1.1.0.161, Agent (MA) 5.x prior to 5.0.2 Hotfix 1110392 (5.0.2.333), Data Exchange Layer 2.x (DXL) prior to 2.0.1.140.1, Data Loss Prevention Endpoint (DLPe) 9.3 before Patch 6 and 9.4 before Pat...
Mcafee Data Loss Prevention Endpoint
Mcafee Agent
Mcafee Virusscan Enterprise
Mcafee Host Intrusion Prevention
Mcafee Active Response
Mcafee Data Exchange Layer
Mcafee Endpoint Security
1 EDB exploit
6.7
CVSSv3
CVE-2023-0012
In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be started under a privileged account. Note that by default all user members of SAP_LocaAdmin are denie...
Sap Host Agent 7.21
Sap Host Agent 7.22
7
CVSSv3
CVE-2020-28169
The td-agent-builder plugin prior to 2020-12-18 for Fluentd allows malicious users to gain privileges because the bin directory is writable by a user account, but a file in bin is executed as NT AUTHORITY\SYSTEM.
Td-agent-builder Project Td-agent-builder
Debian Debian Linux 10.0
1 Github repository
2.5
CVSSv3
CVE-2024-20922
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported versions that are affected are Oracle Java SE: 8u391; Oracle GraalVM Enterprise Edition: 20.3.12 and 21.3.8. Difficult to exploit vulnerability allows u...
Oracle Graalvm 21.3.8
Oracle Graalvm 20.3.12
Oracle Jre 1.8.0
Oracle Jdk 1.8.0
Netapp Oncommand Insight -
Netapp Cloud Insights Acquisition Unit -
Netapp Cloud Insights Storage Workload Security Agent -
9.8
CVSSv3
CVE-2017-14377
EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 prior to Build 618 have a security vulnerability that could potentially lead to authentication bypass.
Rsa Authentication Agent For Web 8.0.1
Rsa Authentication Agent For Web 8.0
1 Article
6.7
CVSSv3
CVE-2021-20077
Nessus Agent versions 7.2.0 up to and including 8.2.2 were found to inadvertently capture the IAM role security token on the local host during initial linking of the Nessus Agent when installed on an Amazon EC2 instance. This could allow a privileged malicious user to obtain the ...
Tenable Nessus Agent
7.8
CVSSv3
CVE-2021-31847
Improper access control vulnerability in the repair process for McAfee Agent for Windows before 5.7.4 could allow a local malicious user to perform a DLL preloading attack using unsigned DLLs. This would result in elevation of privileges and the ability to execute arbitrary code ...
Mcafee Agent
5.3
CVSSv3
CVE-2015-8987
Man-in-the-middle (MitM) attack vulnerability in non-Mac OS agents in McAfee (now Intel Security) Agent (MA) 4.8.0 patch 2 and previous versions allows malicious users to make a McAfee Agent talk with another, possibly rogue, ePO server via McAfee Agent migration to another ePO s...
Mcafee Agent
NA
CVE-2009-1429
The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symantec AntiVirus Server; Symantec AntiVirus Central Quarantine Server; Symantec AntiVirus (SAV) Corporate Edition 9 prior to 9.0 MR7, 10.0 and 10.1 p...
Symantec Client Security 3.0
Symantec Client Security 3.0.1.1009
Symantec Antivirus 10.0.7
Symantec Client Security 3.0.2.2020
Symantec Client Security 3.0.2.2021
Symantec Client Security 3.0.1.1000
Symantec Client Security 3.0.2.2002
Symantec Client Security 3.0.1.1008
Symantec Antivirus 10.0.6
Symantec Client Security 3.0.2.2011
Symantec Antivirus -
Symantec Client Security 3.0.2
Symantec Antivirus 10.0.2
Symantec Antivirus
Symantec Antivirus 10.0.1
Symantec Client Security 3.0.1.1001
Symantec Client Security 3.0.2.2001
Symantec Antivirus Central Quarantine Server
Symantec Antivirus 10.0.9
Symantec Antivirus 10.0
Symantec Client Security 2.0
Symantec Client Security 3.0.0.359
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »