Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

McAfee Endpoint Security (ENS) — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in McAfee Endpoint Security (ENS), with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for McAfee Endpoint Security (ENS), focusing on security weaknesses within this specific endpoint protection product. The collection compiles reported flaws and security advisories disclosed over the past several years, providing a consolidated view of known issues affecting the software’s integrity. Readers can utilize this resource to track the vendor’s security response history, analyze recurring weakness classes, or review the complete vulnerability timeline associated with this deployment. By consolidating disparate security reports, the page offers a structured reference for understanding how these specific risks have been identified, categorized, and addressed by the vendor over time. This summary serves as a technical reference point for assessing the security posture of systems running McAfee Endpoint Security, highlighting patterns in vulnerability disclosure and patching without detailing individual exploit mechanics or specific CVE identifiers. It is designed for security professionals and system administrators seeking a broad overview of historical security incidents and the evolution of the product’s security landscape, rather than providing immediate remediation steps for any single active threat.

Vendor: McAfee, LLC

CVE ID Title CVSS Severity Published
CVE-2020-7331 Unquoted service executable path in McAfee Endpoint Security (ENS) CWE-428 7.8 High 2020-11-12
CVE-2020-7255 Privilege Escalation vulnerability  in ENS CWE-264 3.9 Low 2020-04-15
CVE-2020-7250 ENS symbolic link log file manipulation vulnerability CWE-59 8.2 High 2020-04-15
CVE-2020-7257 Privilege Escalation vulnerability through Symbolic links in ENS CWE-264 8.4 High 2020-04-15
CVE-2020-7259 Unsigned executable vulnerability in ENS can be used to bypass intended self-protection rules CWE-264 6.6 Medium 2020-04-15
CVE-2020-7261 Buffer overwrite in ENS allowed to bypass AMSI protection CWE-119 6.1 Medium 2020-04-15
CVE-2020-7273 Autorun registry bypass CWE-269 6.7 Medium 2020-04-15
CVE-2020-7275 Unquoted service paths for some McAfee ENS files CWE-428 4.8 Medium 2020-04-15
CVE-2020-7274 ENS elevated permissions vulnerability CWE-269 6.6 Medium 2020-04-15
CVE-2020-7277 McAfee processes not protected CWE-693 6.8 Medium 2020-04-15
CVE-2020-7276 Unrestricted Policy Management using MfeUpgradeTool.exe CWE-287 6.4 Medium 2020-04-15
CVE-2020-7278 McAfee firewall rules not enforced correctly CWE-284 7.4 High 2020-04-15
CVE-2020-7251 ESConfig Tool able to edit configuration for newer version CWE-358 5.0 Medium 2020-02-14
CVE-2019-3653 ESConfig Tool access not controlled CWE-284 4.6 Medium 2019-10-09
CVE-2019-3652 ENS code injection in EPSetup.exe CWE-94 5.0 Medium 2019-10-09
CVE-2019-3586 McAfee Endpoint Security firewall not always acting on GTI lookup results CWE-693 4.7 - 2019-05-15
CVE-2019-3582 McAfee Endpoint Security updates fix a privilege escalation vulnerability 7.8 - 2019-02-28

All 17 known CVE vulnerabilities affecting McAfee Endpoint Security (ENS) with full Chinese analysis, references, and POCs where available.