Mcafee
mcafee
602 CVEs • 137 products
Products (137)
Click to collapseToggle
Products (137)
Click to collapse
CVEs (602)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Mcafee 2Livesafe Security Scan PlusMay 13, 2026 Sep 1, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A Code Injection vulnerability in the non-certificate-based authentication mechanism in McAfee Live Safe versions prior to 16.0.3 and McAfee Security Scan Plus (MSS+) versions prior to 3.11.599.3 allows network attackers...Show more |
6Citrix DebianMcafee+3 more14Clustered Data Ontap Data OntapDebian Linux+11 moreMay 13, 2026 Aug 7, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of crafted "KOD" messages. |
1Mcafee 1Advanced Threat Defense May 13, 2026 Jul 12, 2017 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands. |
1Mcafee 1Advanced Threat Defense May 13, 2026 Jul 12, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to bypass ATD detection via loose enfor...Show more |
1Mcafee 1Advanced Threat Defense May 13, 2026 Jul 12, 2017 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to execute a command of their choice via a crafted HTTP request parameter...Show more |
1Mcafee 1Advanced Threat Defense May 13, 2026 Jul 12, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to execute a command of their choice via a crafted H...Show more |
1Mcafee 1Advanced Threat Defense May 13, 2026 Jul 12, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to change or update any configuration settings,...Show more |
1Mcafee 1Data Loss Prevention Endpoint May 13, 2026 Jun 23, 2017 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScri...Show more |
8Debian GnuMcafee+5 more20Cloud Magnum Orchestration Debian LinuxEnterprise Linux+17 moreMay 13, 2026 Jun 19, 2017 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note that additional hard...Show more |
5Debian McafeeOpenldap+2 more10Blockchain Platform Debian LinuxEnterprise Linux Desktop+7 moreMay 13, 2026 May 29, 2017 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can crash slapd by issuing a search including the Paged Results control with...Show more |
A directory traversal vulnerability in the ePO Extension in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, and 5.1.3 and earlier allows remote authenticated users to execute a command of their choice via an authenticate...Show more |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appliance web interface. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Web Server method disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to exploit and find another hole via HTTP response header. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 4.5 MEDIUM· v3 3.5 LOW· v2 Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 8.0 HIGH· v3 6.0 MEDIUM· v2 Session Side jacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view, add, and remove users via modification of the HTTP request. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Banner Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to obtain product information via HTTP response header. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 6.5 MEDIUM· v3 5.0 MEDIUM· v2 Privilege Escalation vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via modification of the HTTP request. |
1Mcafee 1Network Data Loss Prevention May 13, 2026 May 17, 2017 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Embedding Script (XSS) in HTTP Headers vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to get session/cookie information via modification of the HTTP request. |
1Mcafee 1Virusscan Enterprise May 13, 2026 Apr 25, 2017 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 A memory corruption vulnerability in Scriptscan COM Object in McAfee VirusScan Enterprise 8.8 Patch 8 and earlier allows remote attackers to create a Denial of Service on the active Internet Explorer tab via a crafted HT...Show more |
1Mcafee 1Anti Malware Scan Engine May 13, 2026 Mar 31, 2017 N/A· v4 7.3 HIGH· v3 4.4 MEDIUM· v2 Software Integrity Attacks vulnerability in Intel Security Anti-Virus Engine (AVE) 5200 through 5800 allows local attackers to bypass local security protection via a crafted input file. |