Loading HuntDB...

McAfee,LLC

42 Products 82 CVEs

CVE Severity Distribution (All Time)

Critical
3
High
44
Medium
30
Low
4

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2022-1823 HIGH 3 years ago

Improper privilege management vulnerability in McAfee Consumer Product Removal Tool prior to version 10.4.128 could allow a local user to modify a co…

CVE-2022-1824 HIGH 3 years ago

An uncontrolled search path vulnerability in McAfee Consumer Product Removal Tool prior to version 10.4.128 could allow a local attacker to perform a…

CVE-2022-1254 MEDIUM 3 years, 2 months ago

A URL redirection vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.9, 9.x prior to 9.2.20, 8.x prior to 8.2.27, and 7.x prior to 7.8.…

CVE-2022-1257 MEDIUM 3 years, 2 months ago

Insecure storage of sensitive information vulnerability in MA for Linux, macOS, and Windows prior to 5.7.6 allows a local user to gain access to sens…

CVE-2022-1258 HIGH 3 years, 2 months ago

A blind SQL injection vulnerability in the ePolicy Orchestrator (ePO) extension of MA prior to 5.7.6 can be exploited by an authenticated administrat…

CVE-2022-1256 HIGH 3 years, 2 months ago

A local privilege escalation vulnerability in MA for Windows prior to 5.7.6 allows a local low privileged user to gain system privileges through runn…

CVE-2022-0861 LOW 3 years, 3 months ago

A XML Extended entity vulnerability in McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a remote administrator attacker to…

CVE-2022-0862 LOW 3 years, 3 months ago

A lack of password change protection vulnerability in a depreciated API of McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allow…

CVE-2022-0858 MEDIUM 3 years, 3 months ago

A cross-site scripting (XSS) vulnerability in McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a remote attacker to potent…

CVE-2022-0859 MEDIUM 3 years, 3 months ago

McAfee Enterprise ePolicy Orchestrator (ePO) prior to 5.10 Update 13 allows a local attacker to point an ePO server to an arbitrary SQL server during…