Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

McAfee,LLC — Vulnerabilities & Security Advisories 82

Browse all 82 CVE security advisories affecting McAfee,LLC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

McAfee, LLC operates primarily in the endpoint security and threat intelligence sectors, providing antivirus, firewall, and data loss prevention solutions to enterprise and consumer markets. Historical vulnerability records indicate a prevalence of remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from complex legacy codebases and third-party dependencies. These defects frequently allow attackers to bypass authentication or escalate privileges, compromising system integrity. Notable incidents include critical RCE vulnerabilities in McAfee Endpoint Security that enabled unauthorized remote control, highlighting risks associated with high-privilege services. The company has faced scrutiny over data handling practices and past breaches, prompting significant architectural shifts toward cloud-native security models. With 82 recorded CVEs, the firm continues to address legacy technical debt while adapting to evolving threat landscapes, emphasizing the need for rigorous patch management and secure development lifecycle adherence in its extensive product portfolio.

CVE ID Title CVSS Severity Published
CVE-2021-31843 Improper access control vulnerability in McAfee ENS for Windows — McAfee Endpoint Security (ENS) for WIndows CWE-59 7.3 High 2021-09-17
CVE-2021-31842 McAfee Endpoint Security 代码问题漏洞 — McAfee Endpoint Security (ENS) for WIndows CWE-776 5.0 Medium 2021-09-17
CVE-2021-31838 Command injection through environment variable in MVISION EDR — MVISION EDR CWE-78 8.4 High 2021-06-29
CVE-2021-31840 DLL preload vulnerability in McAfee Agent for Windows — McAfee Agent for Windows CWE-427 7.3 High 2021-06-10
CVE-2021-31839 Incorrect permissions on McAfee Agent for Windows event folder — McAfee Agent for Windows CWE-269 4.8 Medium 2021-06-10
CVE-2021-31832 Cross site scripting vulnerability in DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows CWE-79 5.2 Medium 2021-06-09
CVE-2021-31837 Out of bounds write vulnerability in McAfee GetSusp — McAfee GetSusp CWE-787 8.8 High 2021-06-09
CVE-2021-31830 Cross site Scripting (XSS) vulnerability in McAfee DBSec — McAfee Database Security (DBSec) CWE-79 5.9 Medium 2021-06-03
CVE-2021-31831 Incorrect access to deleted scripts vulnerability in McAfee DBSec — McAfee Database Security (DBSec) CWE-552 4.9 Medium 2021-06-03
CVE-2021-23896 Cleartext Transmission of Sensitive Information in McAfee DBSec — McAfee Database Security (DBSec) CWE-319 3.2 Low 2021-06-02
CVE-2021-23895 Authorized deserialization of untrusted data in McAfee DBSec — McAfee Database Security (DBSec) CWE-502 9.0 Critical 2021-06-02
CVE-2021-23894 Unauthorized deserialization of untrusted data in McAfee DBSec — McAfee Database Security (DBSec) CWE-502 9.6 Critical 2021-06-02
CVE-2021-23892 Mcafee McAfee Security 后置链接漏洞 — McAfee Endpoint Security (ENS) for Linux CWE-59 8.2 High 2021-05-12
CVE-2021-23872 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP) CWE-59 7.8 High 2021-05-12
CVE-2021-23891 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP) CWE-269 7.8 High 2021-05-12
CVE-2020-7270 Sensitive Information Exposure in McAfee ATD — McAfee Advanced Threat Defense (ATD) CWE-200 4.9 Medium 2021-04-15
CVE-2020-7269 Sensitive Information Exposure in McAfee ATD — McAfee Advanced Threat Defense (ATD) CWE-200 4.9 Medium 2021-04-15
CVE-2021-23887 Privilege escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows CWE-269 7.8 High 2021-04-15
CVE-2021-23886 Local Denial of Service in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows CWE-755 5.5 Medium 2021-04-15
CVE-2020-7308 Transmission of data in clear text by McAfee ENS — McAfee Endpoint Security (ENS) for WIndows CWE-319 4.8 Medium 2021-04-15
CVE-2021-23884 Clear text exposure of password in McAfee CSR ePO extension — McAfee Content Security Reporter (CSR) CWE-319 4.3 Medium 2021-04-15
CVE-2021-23890 McAfee ePO Information Leak vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-200 6.5 Medium 2021-03-26
CVE-2021-23888 McAfee ePO unvalidated URL redirect vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-601 6.3 Medium 2021-03-26
CVE-2021-23889 McAfee ePO Cross-site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) 3.5 Low 2021-03-26
CVE-2020-7346 Privilege escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows CWE-59 7.8 High 2021-03-23
CVE-2021-23885 Privilege escalation vulnerability in McAfee Web Gateway (MWG) UI — McAfee Web Gateway (MWG) CWE-269 9.0 Critical 2021-02-17
CVE-2021-23874 McAfee Total Protection (MTP) privilege escalation vulnerability — McAfee Total Protection (MTP) CWE-269 8.2 High 2021-02-10
CVE-2021-23876 McAfee Total Protection (MTP) Bypass Remote Procedure call vulnerability — McAfee Total Protection (MTP) CWE-269 7.8 High 2021-02-10
CVE-2021-23873 McAfee Total Protection (MTP) privilege escalation vulnerability — McAfee Total Protection (MTP) CWE-59 7.8 High 2021-02-10
CVE-2020-7335 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP) CWE-269 7.5 High 2020-12-01

This page lists every published CVE security advisory associated with McAfee,LLC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.