Vulnerabilities > Mcafee > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-1908 Information Disclosure vulnerability in Mcafee FreeScan CoMcFreeScan Browser
McFreeScan.CoMcFreeScan.1 ActiveX object in Mcafee FreeScan allows remote attackers to obtain sensitive information via the GetSpecialFolderLocation function with certain parameters.
network
low complexity
mcafee
5.0
2004-12-31 CVE-2004-1906 Buffer Overflow vulnerability in Mcafee FreeScan CoMcFreeScan Browser Object
Mcafee FreeScan allows remote attackers to cause a denial of service and possibly arbitrary code via a long string in the ScanParam property of a COM object, which may trigger a buffer overflow.
network
low complexity
mcafee
5.0
2004-08-18 CVE-2004-0230 TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.
network
low complexity
oracle openpgp mcafee netbsd xinuos juniper
5.0
2004-02-17 CVE-2004-0095 Buffer Mismanagement vulnerability in Mcafee Epolicy Orchestrator 3.6.0
McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow.
network
low complexity
mcafee
5.0
2003-08-27 CVE-2003-0610 Unspecified vulnerability in Mcafee Epolicy Orchestrator 3.0
Directory traversal vulnerability in ePO agent for McAfee ePolicy Orchestrator 3.0 allows remote attackers to read arbitrary files via a certain HTTP request.
network
low complexity
mcafee
5.0
2002-12-31 CVE-2002-2282 Unspecified vulnerability in Mcafee Virusscan 4.5.1
McAfee VirusScan 4.5.1, when the WebScanX.exe module is enabled, searches for particular DLLs from the user's home directory, even when browsing the local hard drive, which allows local users to run arbitrary code via malicious versions of those DLLs.
local
mcafee
6.9
2002-12-31 CVE-2002-1875 Unspecified vulnerability in Mcafee Entercept Agent 2.5
Entercept Agent 2.5 agent for Windows, released before May 21, 2002, allows local administrative users to obtain the entercept agent password, which could allow the administrators to log on as the entercept_agent account and conceal their identity.
local
low complexity
mcafee
4.6
2001-08-22 CVE-2001-0612 Remote Desktop Denial of Service vulnerability in Mcafee Remote Desktop 32 2.1.2/3.0
McAfee Remote Desktop 3.0 and earlier allows remote attackers to cause a denial of service (crash) via a large number of packets to port 5045.
network
low complexity
mcafee
5.0
2001-07-11 CVE-2001-1144 Directory Traversal vulnerability in Mcafee Asap Virusscan 1.0
Directory traversal vulnerability in McAfee ASaP VirusScan agent 1.0 allows remote attackers to read arbitrary files via a ..
network
low complexity
mcafee
5.0
2001-01-09 CVE-2000-1128 Unspecified vulnerability in Mcafee Virusscan 4.5
The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse "common.exe" program in the C:\Program Files directory.
local
low complexity
mcafee
4.6