CVEs we hold for Mcafee
Records whose assigning authority named Mcafee as the affected vendor. Newest identifiers first, capped at 200.
CVE-2022-1258SQL injection vulnerability in McAfee Agent's ePO extensionMcAfee,LLC McAfee Agent ePO extension
CVE-2022-1257Improper Verification of Cryptographic Signature by McAfee AgentMcAfee,LLC McAfee Agent
CVE-2022-1256Improper Privilege Management in McAfee Agent for WindowsMcAfee,LLC McAfee Agent for Windows
CVE-2022-0857ePO Reflected Cross-site scripting vulnerabilityMcAfee,LLC McAfee ePolicy Orchestrator (ePO)
CVE-2022-0280McAfee Total Protection (MTP) - File Deletion vulnerabilityMcAfee Total Protection for Windows
CVE-2021-4088Blind SQL injection in DLP ePO extensionMcAfee,LLC McAfee Data Loss Prevention (DLP) ePO Extension
CVE-2021-31850Denial of Service in Database Security on WindowsMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-31849Data Loss Prevention (DLP) ePO extension - SQL injectionMcAfee Data Loss Prevention (DLP) ePO extension
CVE-2021-31848Data Loss Prevention (DLP) ePO extension - Cross site scripting (XSS)McAfee Data Loss Prevention (DLP) ePO extension
CVE-2021-31847Improper privilege management in repair process of MA for WindowsMcAfee,LLC McAfee Agent for Windows
CVE-2021-31845Remote Code Execution in McAfee DLP DiscoverMcAfee,LLC McAfee Data Loss Prevention (DLP) Discover
CVE-2021-31844Local Privilege Escalation in McAfee DLP Endpoint for WindowsMcAfee,LLC McAfee Data Loss Prevention (DLP) Endpoint for…
CVE-2021-31843Improper access control vulnerability in McAfee ENS for WindowsMcAfee,LLC McAfee Endpoint Security (ENS) for WIndows
CVE-2021-31840DLL preload vulnerability in McAfee Agent for WindowsMcAfee,LLC McAfee Agent for Windows
CVE-2021-31839Incorrect permissions on McAfee Agent for Windows event folderMcAfee,LLC McAfee Agent for Windows
CVE-2021-31835McAfee ePO Cross-Site Scripting vulnerabilityMcAfee,LLC McAfee ePolicy Orchestrator (ePO)
CVE-2021-31834McAfee ePO Cross-Site Scripting vulnerabilityMcAfee,LLC McAfee ePolicy Orchestrator (ePO)
CVE-2021-31832Cross site scripting vulnerability in DLP Endpoint for WindowsMcAfee,LLC McAfee Data Loss Prevention (DLP) Endpoint for…
CVE-2021-31831Incorrect access to deleted scripts vulnerability in McAfee DBSecMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-31830Cross site Scripting (XSS) vulnerability in McAfee DBSecMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-23896Cleartext Transmission of Sensitive Information in McAfee DBSecMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-23895Authorized deserialization of untrusted data in McAfee DBSecMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-23894Unauthorized deserialization of untrusted data in McAfee DBSecMcAfee,LLC McAfee Database Security (DBSec)
CVE-2021-23893Privilege Escalation vulnerability in McAfee Drive Encryption (MDE)McAfee,LLC McAfee Drive Encryption (MDE)
CVE-2021-23891Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2021-23889McAfee ePO Cross-site Scripting vulnerabilityMcAfee,LLC McAfee ePolicy Orchestrator (ePO)
CVE-2021-23888McAfee ePO unvalidated URL redirect vulnerabilityMcAfee,LLC McAfee ePolicy Orchestrator (ePO)
CVE-2021-23887Privilege escalation in McAfee DLP Endpoint for WindowsMcAfee,LLC McAfee Data Loss Prevention (DLP) Endpoint for…
CVE-2021-23886Local Denial of Service in McAfee DLP Endpoint for WindowsMcAfee,LLC McAfee Data Loss Prevention (DLP) Endpoint for…
CVE-2021-23885Privilege escalation vulnerability in McAfee Web Gateway (MWG) UIMcAfee,LLC McAfee Web Gateway (MWG)
CVE-2021-23884Clear text exposure of password in McAfee CSR ePO extensionMcAfee,LLC McAfee Content Security Reporter (CSR)
CVE-2021-23883Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS)McAfee LLC Endpoint Security (ENS) for Windows
CVE-2021-23882Improper Access Control in the ENS installerMcAfee LLC Endpoint Security (ENS) for Windows
CVE-2021-23880Improper Access Control in the ENS installerMcAfee LLC Endpoint Security (ENS) for Windows
CVE-2021-23879Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local…McAfee, LLC Endpoint Product Removal Tool
CVE-2021-23878Clear text storage of sensitive Information in ENSMcAfee LLC Endpoint Security (ENS) for Windows
CVE-2021-23877McAfee Total Protection (MTP) - Privilege Escalation vulnerabilityMcAfee Total Protection (MTP)
CVE-2021-23876McAfee Total Protection (MTP) Bypass Remote Procedure call vulnerabilityMcAfee,LLC McAfee Total Protection (MTP)
CVE-2021-23874McAfee Total Protection (MTP) privilege escalation vulnerabilityMcAfee,LLC McAfee Total Protection (MTP)
CVE-2021-23873McAfee Total Protection (MTP) privilege escalation vulnerabilityMcAfee,LLC McAfee Total Protection (MTP)
CVE-2021-23872Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2020-7346Privilege escalation in McAfee DLP Endpoint for WindowsMcAfee,LLC McAfee Data Loss Prevention (DLP) Endpoint for…
CVE-2020-7339Database Security(DBS)-Use of a Broken or Risky Cryptographic AlgorithmMcAfee Database Security
CVE-2020-7337Incorrect Permission Assignment for Critical ResourceMcAfee, LLC VirusScan Enterprise (VSE)
CVE-2020-7336Network Security Management (NSM) - Cross Site Request Forgery vulnerabilityMcAfee Network Security Management (NSM)
CVE-2020-7335Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2020-7334Improper privilege assignment vulnerability in the installer component of MACCMcAfee,LLC McAfee Application and Change Control (MACC)
CVE-2020-7333Cross-site Scripting (XSS) in firewall ePO extension of McAfee Endpoint Security (ENS)Mcafee, LLC Endpoint Security for Windows
CVE-2020-7332Cross-Site Request Forgery (CSRF) in firewall ePO extension of McAfee Endpoint Security (ENS)Mcafee, LLC Endpoint Security for Windows
CVE-2020-7331Unquoted service executable path in McAfee Endpoint Security (ENS)McAfee, LLC McAfee Endpoint Security (ENS)
CVE-2020-7330Privilege Escalation vulnerability in McAfee Total Protection (MTP) trialMcAfee,LLC McAfee Total Protection (MTP) Trial
CVE-2020-7329Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extensionMcAfee, LLC MVISION Endpoint ePO extension
CVE-2020-7328Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extensionMcAfee, LLC MVISION Endpoint ePO extension
CVE-2020-7327McAfee MVEDR - Improperly implemented security checkMcAfee,LLC McAfee MVISION Endpoint Detection and Response
CVE-2020-7323Authentication Protection Bypass vulnerability in ENS for WindowsMcAfee LLC Endpoint Security for Windows
CVE-2020-7322Exposure of Sensitive Information in ENS for WindowsMcAfee LLC Endpoint Security for Windows
CVE-2020-7320Protection Mechanism Failure in ENS for WindowsMcAfee LLC Endpoint Security for Windows
CVE-2020-7319Improper Access Control Vulnerability in ENS for WindowsMcAfee LLC Endpoint Security for Windows
CVE-2020-7318ePolicy Orchistrator (ePO) - Cross-Site Scripting vulnerabilityMcAfee ePolicy Orchistrator (ePO)
CVE-2020-7317ePolicy Orchistrator (ePO) - Cross-Site Scripting vulnerabilityMcAfee ePolicy Orchistrator (ePO)
CVE-2020-7316File and Removable Media Protection update fixes one vulnerabilityMcAfee File & Removable Media Protection (FRP)
CVE-2020-7314Privilege Escalation vulnerability in McAfee DXL for MacMcAfee DXL for Mac shipped with MA
CVE-2020-7310Privilege Escalation vulnerability in McAfee Total Protection (MTP) trial installerMcAfee,LLC McAfee Total Protection (MTP) Trial
CVE-2020-7309Cross Site Scripting vulnerability in ePO extension of MACCMcAfee, LLC McAfee Application and Change Control
CVE-2020-7308Transmission of data in clear text by McAfee ENSMcAfee,LLC McAfee Endpoint Security (ENS) for WIndows
CVE-2020-7302DLP ePO extension - Unrestricted Upload of File with Dangerous TypeMcAfee DLP ePO extension
CVE-2020-7299Sensitive Data Exposure vulnerability in McAfee True Key Windows ClientMcAfee,LLC McAfee True Key Windows client
CVE-2020-7291Privilege Escalation vulnerability MAR for MacMcAfee,LLC McAfee Active Response (MAR) for Mac
CVE-2020-7290Privilege Escalation vulnerability in MAR for LinuxMcAfee,LLC McAfee Active Response (MAR) for Linux
CVE-2020-7289Privilege Escalation vulnerability in MAR for WindowsMcAfee,LLC McAfee Active Response (MAR) for Windows
CVE-2020-7288Privilege Escalation vulnerability in EDR for MacMcAfee,LLC McAfee Exploit Detection and Response (EDR) for…
CVE-2020-7287Privilege Escalation vulnerability in EDR for LinuxMcAfee,LLC McAfee Exploit Detection and Response (EDR) for…
CVE-2020-7286Privilege Escalation vulnerability in EDR for WindowsMcAfee,LLC McAfee Exploit Detection and Response (EDR) for…
CVE-2020-7285Privilege Escalation vulnerability in MVISION EndpointMcAfee,LLC McAfee MVISION Endpoint
CVE-2020-7284Network Security Management (NSM) - Exposure of Sensitive InformationMcAfee Network Security Management (NSM)
CVE-2020-7283Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2020-7282Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2020-7281Privilege Escalation vulnerability in McAfee Total Protection (MTP)McAfee,LLC McAfee Total Protection (MTP)
CVE-2020-7280Symbolic Link vulnerability during DAT updateMcAfee, LLC McAfee VirusScan Enterprise (VSE)
CVE-2020-7279DLL search order hijacking in Host IPSMcAfee, LLC McAfee Host Intrusion Prevention System (Host…
CVE-2020-7270Sensitive Information Exposure in McAfee ATDMcAfee,LLC McAfee Advanced Threat Defense (ATD)
CVE-2020-7269Sensitive Information Exposure in McAfee ATDMcAfee,LLC McAfee Advanced Threat Defense (ATD)
CVE-2020-7267Privilege Escalation vulnerability through symbolic links in VSELMcAfee,LLC McAfee VirusScan Enterprise (VSE) for Linux
CVE-2020-7266Privilege Escalation vulnerability through symbolic links in VSE for WindowsMcAfee,LLC McAfee VirusScan Enterprise (VSE) for Windows
CVE-2020-7265Privilege Escalation vulnerability through symbolic links in ENSMMcAfee,LLC McAfee Endpoint Security (ENS) for Mac
CVE-2020-7264Privilege Escalation vulnerability through symbolic links in ENS for WindowsMcAfee,LLC McAfee Endpoint Security (ENS) for Windows
CVE-2020-7263ENS configuration can be edited by attacker with local administrator permissionsMcAfee, LLC Endpoint Security (ENS) for Window
CVE-2020-7262Improper Access Control vulnerability in ATDMcAfee, LLC McAfee Advanced Threat Defense (ATD)
CVE-2020-7261Buffer overwrite in ENS allowed to bypass AMSI protectionMcAfee Endpoint Security (ENS)
CVE-2020-7260MACC installer DLL side loadingMcAfee, LLC Mcafee Application and Change Control (MACC)
CVE-2020-7259Unsigned executable vulnerability in ENS can be used to bypass intended self-protection rulesMcAfee Endpoint Security (ENS)
CVE-2020-7258Network Security Management (NSM) - Cross site scripting vulnerabilityMcAfee Network Security Management (NSM)
CVE-2020-7257Privilege Escalation vulnerability through Symbolic links in ENSMcAfee Endpoint Security (ENS)
CVE-2020-7256Network Security Management (NSM) - Cross site scripting vulnerabilityMcAfee Network Security Management (NSM)
CVE-2020-7254Privilege escalation in Advanced Threat DefenseMcAfee, LLC McAfee Advanced Threat Defense (ATD)
CVE-2020-7251ESConfig Tool able to edit configuration for newer versionMcAfee, LLC Mcafee Endpoint Security (ENS)
CVE-2019-3663Advanced Threat Defense (ATD) - Unprotected storage of shared credentials vulnerabilityMcAfee Advanced Threat Defense (ATD)
CVE-2019-3662Advanced Threat Defense (ATD) - Path Traversal: '/absolute/pathname/here' vulnerabilityMcAfee Advanced Threat Defense (ATD)
CVE-2019-3661Advanced Threat Defense (ATD) - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')McAfee Advanced Threat Defense (ATD)
CVE-2019-3660Advanced Threat Defense (ATD) - Improper Neutralization of HTTP requestsMcAfee Advanced Threat Defense (ATD)
CVE-2019-3651Advanced Threat Defense (ATD) - Information Disclosure vulnerabilityMcAfee Advanced Threat Defense (ATD)
CVE-2019-3650Advanced Threat Defense (ATD) - Information Disclosure vulnerabilityMcAfee Advanced Threat Defense (ATD)
CVE-2019-3649Advanced Threat Defense (ATD) - Information Disclosure vulnerabilityMcAfee Advanced Threat Defense (ATD)
CVE-2019-3646McAfee Total Protection - Free Antivirus Trial: DLL Search Order Hijacking vulnerabilityMcAfee, LLC McAfee Total Protection - Free Antivirus Trial
CVE-2019-3641Exploitation of Authorization in TIE ServerMcAfee,LLC Threat Intelligence Exchange Server (TIE Server)
CVE-2019-3638Web Gateway (MWG) - Reflected Cross Site Scripting vulnerabilityMcAfee Web Gateway(MWG)
CVE-2019-3637Privilege Escalation vulnerability in FRP 5.x earlier than 5.1.0.209McAfee, LLC McAfee FRP
CVE-2019-3636File masquerade attack vulnerability in McAfee Total ProtectionMcAfee, LCC McAfee Total Protection
CVE-2019-3634Buffer overflow in DLP Endpoint for WindowsMcAfee, LLC Data Loss Prevention (DLPe) for Windows
CVE-2019-3633Buffer overflow in DLP Endpoint for WindowsMcAfee, LLC Data Loss Prevention (DLPe) for Windows
CVE-2019-3632Directory Traversal vulnerability could lead to elevated privilegesMcAfee, LLC McAfee Enterprise Security Manager (ESM)
CVE-2019-3631Command Injection could allow authenticated users to execute arbitrary codeMcAfee, LLC McAfee Enterprise Security Manager (ESM)
CVE-2019-3630Command Injection could allow authenticated users to execute arbitrary codeMcAfee, LLC McAfee Enterprise Security Manager (ESM)
CVE-2019-3629Application protections bypass vulnerability could allow unauthenticated user to impersonate system usersMcAfee, LLC McAfee Enterprise Security Manager (ESM)
CVE-2019-3628Privilege escalation could allow authenticated user to gain access to a core systemMcAfee, LLC McAfee Enterprise Security Manager (ESM)
CVE-2019-3622DLP Endpoint log file redirection to arbitrary locationsMcAfee, LLC Data Loss Prevention (DLPe) for Windows
CVE-2019-3621DLP Endpoint Windows lock screen bypass with physical accessMcAfee, LLC Data Loss Prevention (DLPe) for Windows
CVE-2019-3615Data Leakage Vulnerability in McAfee Database Security web interfaceMcAfee, LCC McAfee Database Security (DAM)
CVE-2019-3612Information disclosure vulnerability in McAfee TIE Server and DXL PlatformMcAfee, LLC Threat Intelligence Exchange (TIE) Server
CVE-2019-3610True Key Browser Extension 3.1.9219.0 update fixes Sensitive Data Exposure vulnerabilityMcAfee, LLC True Key (TK)
CVE-2019-3606Data leakage when in an MDR pair by McAfee Network Security Manager 9.xMcAfee Network Security Manager (NSM)
CVE-2019-3604ePolicy Orchestrator Cloud update fixes multiple Cross-Site Request Forgery vulnerabilitiesMcAfee, LLC ePolicy Orchestrator Cloud
CVE-2019-3602Cross site scripting vulnerability in McAfee NSM impacting authenticated usersMcAfee, LLC McAfee Network Security Manager (NSM)
CVE-2019-3599McAfee Agent update fixes an Information Disclosure vulnerabilityMcAfee, LLC McAfee Agent (MA)
CVE-2019-3598McAfee Agent update fixes a vulnerability in handling UDP requestsMcAfee, LLC McAfee Agent (MA)
CVE-2019-3597Authentication bypass in McAfee Network Security Manager 9.xMcAfee Network Security Manager (NSM)
CVE-2019-3595DLP Endpoint ePO extension not sanitizing CSV exportsMcAfee, LLC DLP Endpoint ePO extension
200 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.