Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mcafee vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2015-8765
Intel McAfee ePolicy Orchestrator (ePO) 4.6.9 and previous versions, 5.0.x, 5.1.x prior to 5.1.3 Hotfix 1106041, and 5.3.x prior to 5.3.1 Hotfix 1106041 allow remote malicious users to execute arbitrary code via a crafted serialized Java object, related to the Apache Commons Coll...
Mcafee Epolicy Orchestrator
7.5
CVSSv2
CVE-2014-8522
The MySQL database in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 does not require a password, which makes it easier for remote malicious users to obtain access.
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention 9.2.1
7.5
CVSSv2
CVE-2014-8530
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to obtain sensitive information, affect integrity, or cause a denial of service via unknown vectors, related to simultaneous logins.
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 9.2.0
Mcafee Network Data Loss Prevention 8.6
7.5
CVSSv2
CVE-2014-8533
McAfee Network Data Loss Prevention (NDLP) prior to 9.3 allows remote malicious users to execute arbitrary code via vectors related to ICMP redirection.
Mcafee Network Data Loss Prevention 9.2.1
Mcafee Network Data Loss Prevention 8.6
Mcafee Network Data Loss Prevention
Mcafee Network Data Loss Prevention 9.2.0
7.5
CVSSv2
CVE-2011-5100
The web interface in McAfee Firewall Reporter prior to 5.1.0.13 does not properly implement cookie authentication, which allows remote malicious users to obtain access, and disable anti-virus functionality, via an HTTP request.
Mcafee Firewall Reporter
7.5
CVSSv2
CVE-2012-4595
McAfee Email and Web Security (EWS) 5.5 through Patch 6 and 5.6 through Patch 3, and McAfee Email Gateway (MEG) 7.0.0 and 7.0.1, allows remote malicious users to bypass authentication and obtain an admin session ID via unspecified vectors.
Mcafee Email And Web Security 5.5
Mcafee Email And Web Security 5.6
Mcafee Email Gateway 7.0.0
Mcafee Email Gateway 7.0.1
7.5
CVSSv2
CVE-2006-5272
Stack-based buffer overflow in McAfee ePolicy Orchestrator 3.5 up to and including 3.6.1, ProtectionPilot 1.1.1 and 1.5, and Common Management Agent (CMA) 3.6.0.453 and previous versions allows remote malicious users to execute arbitrary code via a crafted ping packet.
Mcafee Protectionpilot 1.1.1
Mcafee Common Management Agent
Mcafee Protectionpilot 1.5.0
Mcafee E-business Server 3.5
Mcafee E-business Server 3.6.1
7.5
CVSSv2
CVE-2007-1538
McAfee VirusScan Enterprise 8.5.0.i uses insecure permissions for certain Windows Registry keys, which allows local users to bypass local password protection via the UIP value in (1) HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection or (2) HKEY_LOCAL_MACHINE\SOFTWARE\Network A...
Mcafee Virusscan Enterprise 8.5i
7.5
CVSSv2
CVE-2006-6707
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTrace Pro (aka McAfee Visual Trace) 3.25 allows remote malicious users to execute arbitrary code via a long argument string to the TraceTarget...
Mcafee Neotrace 3.25
Mcafee Visual Trace 3.25
2 EDB exploits
7.5
CVSSv2
CVE-2005-2188
McAfee IntruShield Security Management System obtains the user ID from the URL, which allows remote malicious users to guess the Manager account and possibly gain privileges via a brute force attack.
Mcafee Intrushield Security Management System
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »