Mcafee

Endpoint Security

37 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Published 17.09.2021 14:15:08
  • Last modified 21.11.2024 06:06:20

Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allows local users to access files which they would otherwise not have access to via manipulating junction links to redirect ...

  • EPSS 0.05%
  • Published 17.09.2021 14:15:08
  • Last modified 21.11.2024 06:06:20

XML Entity Expansion injection vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2021 Update allows a local user to initiate high CPU and memory consumption resulting in a Denial of Service attack through carefully...

  • EPSS 0.09%
  • Published 15.04.2021 08:15:14
  • Last modified 21.11.2024 05:37:02

Cleartext Transmission of Sensitive Information between McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update and McAfee Global Threat Intelligence (GTI) servers using DNS allows a remote attacker to view the requests from E...

  • EPSS 0.31%
  • Published 10.02.2021 11:15:13
  • Last modified 21.11.2024 05:51:59

A stored cross site scripting vulnerability in ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 February 2021 Update allows an ENS ePO administrator to add a script to a policy event which will trigger the script to be run through a br...

  • EPSS 0.06%
  • Published 10.02.2021 10:15:13
  • Last modified 21.11.2024 05:51:59

A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows a local administrator to cause Windows to crash via a specific system call which is not handled correctly. This varies ...

  • EPSS 0.05%
  • Published 10.02.2021 10:15:13
  • Last modified 21.11.2024 05:51:59

Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows local administrators to prevent the installation of some ENS files by placing carefully crafted files where ENS will be in...

  • EPSS 0.05%
  • Published 10.02.2021 10:15:13
  • Last modified 21.11.2024 05:51:59

Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows authenticated local administrator user to perform an uninstallation of the anti-malware engine via the running of a specifi...

  • EPSS 0.17%
  • Published 10.02.2021 09:15:13
  • Last modified 21.11.2024 05:51:59

Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows a local user to view ENS settings and credentials via accessing process memory after the ENS...

  • EPSS 0.35%
  • Published 12.11.2020 10:15:13
  • Last modified 21.11.2024 05:37:04

Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows administrators to inject arbitrary web script or HTML via the configuration wizard.

  • EPSS 0.05%
  • Published 12.11.2020 10:15:13
  • Last modified 21.11.2024 05:37:04

Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to cause a denial of service and malicious file execution via carefully crafted and named executable files.