Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

McAfee,LLC — Vulnerabilities & Security Advisories 82

Browse all 82 CVE security advisories affecting McAfee,LLC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

McAfee, LLC operates primarily in the endpoint security and threat intelligence sectors, providing antivirus, firewall, and data loss prevention solutions to enterprise and consumer markets. Historical vulnerability records indicate a prevalence of remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from complex legacy codebases and third-party dependencies. These defects frequently allow attackers to bypass authentication or escalate privileges, compromising system integrity. Notable incidents include critical RCE vulnerabilities in McAfee Endpoint Security that enabled unauthorized remote control, highlighting risks associated with high-privilege services. The company has faced scrutiny over data handling practices and past breaches, prompting significant architectural shifts toward cloud-native security models. With 82 recorded CVEs, the firm continues to address legacy technical debt while adapting to evolving threat landscapes, emphasizing the need for rigorous patch management and secure development lifecycle adherence in its extensive product portfolio.

CVE ID Title CVSS Severity Published
CVE-2022-1823 McAfee MCPR privilege escalation — McAfee Consumer Product Removal Tool CWE-269 7.9 High 2022-06-20
CVE-2022-1824 McAfee MCPR privilege escalation — McAfee Consumer Product Removal Tool CWE-427 7.9 High 2022-06-20
CVE-2022-1254 SWG URL redirection vulnerability — Secure Web Gateway CWE-601 6.1 Medium 2022-04-20
CVE-2022-1257 Improper Verification of Cryptographic Signature by McAfee Agent — McAfee Agent CWE-922 6.1 Medium 2022-04-14
CVE-2022-1258 SQL injection vulnerability in McAfee Agent's ePO extension — McAfee Agent ePO extension CWE-89 8.4 High 2022-04-14
CVE-2022-1256 Improper Privilege Management in McAfee Agent for Windows — McAfee Agent for Windows CWE-269 7.8 High 2022-04-14
CVE-2022-0861 ePO XML extended entity vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-611 3.5 Low 2022-03-23
CVE-2022-0862 ePO password change vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-522 3.1 Low 2022-03-23
CVE-2022-0858 Cross-site scripting vulnerability in ePO — McAfee ePolicy Orchestrator (ePO) CWE-79 4.3 Medium 2022-03-23
CVE-2022-0859 ePO database restoration vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-522 6.5 Medium 2022-03-23
CVE-2022-0857 ePO Reflected Cross-site scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 5.4 Medium 2022-03-23
CVE-2022-0842 ePO blind SQL Injection vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-89 5.4 Medium 2022-03-23
CVE-2021-4088 Blind SQL injection in DLP ePO extension — McAfee Data Loss Prevention (DLP) ePO Extension CWE-89 8.4 High 2022-01-24
CVE-2022-0166 Privilege escalation vulnerability in McAfee Agent — McAfee Agent for Windows 7.8 High 2022-01-19
CVE-2021-31854 Code injection vulnerability in McAfee Agent — McAfee Agent for Windows CWE-78 7.7 High 2022-01-19
CVE-2022-0129 DLL Highjack vulnerability in McAfee TechCheck utility — McAfee TechCheck CWE-427 7.4 High 2022-01-11
CVE-2021-31833 Mcafee McAfee Application and Change Control 安全漏洞 — McAfee Application and Change Control (MACC) CWE-269 7.1 High 2022-01-04
CVE-2021-4038 NSM vulnerable to XSS — McAfee Network Security Manager (NSM) CWE-79 4.8 Medium 2021-12-09
CVE-2021-31850 Denial of Service in Database Security on Windows — McAfee Database Security (DBSec) CWE-552 6.1 Medium 2021-12-08
CVE-2021-31851 Cross-Site Scripting vulnerability in Policy Auditor — McAfee Policy Auditor CWE-79 6.1 Medium 2021-11-23
CVE-2021-31852 Cross-Site Scripting vulnerability in Policy Auditor — McAfee Policy Auditor CWE-79 6.1 Medium 2021-11-23
CVE-2021-31853 MDE DLL Search Order Hijacking vulnerability — McAfee Drive Encryption (MDE) CWE-427 7.8 High 2021-11-10
CVE-2021-31834 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 4.8 - 2021-10-22
CVE-2021-31835 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 4.8 Medium 2021-10-22
CVE-2021-23893 Privilege Escalation vulnerability in McAfee Drive Encryption (MDE) — McAfee Drive Encryption (MDE) CWE-269 8.8 High 2021-10-01
CVE-2021-31836 Improper Privilege Management in MA for Windows — McAfee Agent for Windows CWE-269 5.6 Medium 2021-09-22
CVE-2021-31847 Improper privilege management in repair process of MA for Windows — McAfee Agent for Windows CWE-269 8.2 High 2021-09-22
CVE-2021-31841 DLL side loading vulnerability in MA for Windows — McAfee Agent for Windows CWE-426 8.2 High 2021-09-22
CVE-2021-31844 Local Privilege Escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows CWE-120 8.2 High 2021-09-17
CVE-2021-31845 Remote Code Execution in McAfee DLP Discover — McAfee Data Loss Prevention (DLP) Discover CWE-120 8.4 High 2021-09-17

This page lists every published CVE security advisory associated with McAfee,LLC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.