Skip to main content

Vendor/product archive

mcafee / endpoint_security CVEs

Beta · best-effort

37 CVEs tagged to mcafee / endpoint_security0 Critical, 14 High, 22 Medium, 1 Low, 0 Unrated.

CVE-2021-31843

Published Sep 17, 2021

Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allows local users to access files which they would ot…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31842

Published Sep 17, 2021

XML Entity Expansion injection vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2021 Update allows a local user to initiate high CPU and memor…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7308

Published Apr 15, 2021

Cleartext Transmission of Sensitive Information between McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update and McAfee Global Threat Intelligence (GTI)…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-23881

Published Feb 10, 2021

A stored cross site scripting vulnerability in ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 February 2021 Update allows an ENS ePO administrator to add a script…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-23883

Published Feb 10, 2021

A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows a local administrator to cause Windows to crash…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-23882

Published Feb 10, 2021

Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows local administrators to prevent the installation of…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-23880

Published Feb 10, 2021

Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows authenticated local administrator user to perform an…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-23878

Published Feb 10, 2021

Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows a local user to view…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7333

Published Nov 12, 2020

Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows administrators to inject arbitrary w…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7332

Published Nov 12, 2020

Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows an attacker to execute arbitra…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7331

Published Nov 12, 2020

Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to cause a denial of service and malicious file executio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7323

Published Sep 9, 2020

Authentication Protection Bypass vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows physical local users to bypass the Window…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7322

Published Sep 9, 2020

Information Disclosure Vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows local users to gain access to sensitive information…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7320

Published Sep 9, 2020

Protection Mechanism Failure vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows local administrator to temporarily reduce the…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7319

Published Sep 9, 2020

Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows local users to access files which the user otherwi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7265

Published May 8, 2020

Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Mac prior to 10.6.9 allows local users to delete files the user would otherwise not have access to via man…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7264

Published May 8, 2020

Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users to delete files the user would otherwise not have…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7255

Published Apr 15, 2020

Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to ga…

CVSS 3.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-7250

Published Apr 15, 2020

Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows authenticated local user to potentially gain an…

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-7277

Published Apr 15, 2020

Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows local users to stop certain McAfee ENS process…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7276

Published Apr 15, 2020

Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows administrator users to access policy s…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7275

Published Apr 15, 2020

Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local us…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7274

Published Apr 15, 2020

Privilege escalation vulnerability in McTray.exe in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to spawn unrelated processes wi…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7273

Published Apr 15, 2020

Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7261

Published Apr 15, 2020

Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endp…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 37 CVEsPage 1 of 2