Vulnerabilities > Mcafee > Low

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-2894 Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security).
network
high complexity
oracle debian opensuse mcafee canonical
3.7
2019-10-16 CVE-2019-2933 Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries).
network
high complexity
oracle opensuse debian mcafee
3.1
2019-07-26 CVE-2019-13057 An issue was discovered in the server in OpenLDAP before 2.4.48. 3.5
2019-07-23 CVE-2019-2766 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking).
network
high complexity
oracle mcafee hp opensuse
3.1
2019-07-23 CVE-2019-2842 Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JCE).
network
high complexity
oracle opensuse hp mcafee canonical
3.7
2018-05-25 CVE-2018-6674 Missing Encryption of Sensitive Data vulnerability in Mcafee Virusscan Enterprise 8.8.0
Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 13 allows local users to spawn unrelated processes with elevated privileges via the system administrator granting McTray.exe elevated privileges (by default it runs with the current user's privileges).
low complexity
mcafee CWE-311
3.9
2017-10-31 CVE-2017-3933 Cross-site Scripting vulnerability in Mcafee Network Data Loss Prevention
Embedding Script (XSS) in HTTP Headers vulnerability in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via a cross site request forgery attack.
network
mcafee CWE-79
3.5
2017-06-23 CVE-2017-3948 Cross-site Scripting vulnerability in Mcafee Data Loss Prevention Endpoint
Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScript into a user's browsing session.
network
mcafee CWE-79
3.5
2017-03-14 CVE-2013-7460 Improper Access Control vulnerability in Mcafee Application Control and Change Control
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application Control (MAC) 6.1.0 for Linux and earlier allows authenticated users to change binaries that are part of the Application Control whitelist and allows execution of binaries via specific conditions.
local
low complexity
mcafee CWE-284
2.1
2017-03-14 CVE-2013-7461 Improper Access Control vulnerability in Mcafee Application Control and Change Control
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change Control (MCC) 6.1.0 for Linux and earlier allows authenticated users to change files that are part of write protection rules via specific conditions.
local
low complexity
mcafee CWE-284
2.1