Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

McAfee,LLC — Vulnerabilities & Security Advisories 82

Browse all 82 CVE security advisories affecting McAfee,LLC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

McAfee, LLC operates primarily in the endpoint security and threat intelligence sectors, providing antivirus, firewall, and data loss prevention solutions to enterprise and consumer markets. Historical vulnerability records indicate a prevalence of remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from complex legacy codebases and third-party dependencies. These defects frequently allow attackers to bypass authentication or escalate privileges, compromising system integrity. Notable incidents include critical RCE vulnerabilities in McAfee Endpoint Security that enabled unauthorized remote control, highlighting risks associated with high-privilege services. The company has faced scrutiny over data handling practices and past breaches, prompting significant architectural shifts toward cloud-native security models. With 82 recorded CVEs, the firm continues to address legacy technical debt while adapting to evolving threat landscapes, emphasizing the need for rigorous patch management and secure development lifecycle adherence in its extensive product portfolio.

Found 11 results / 82 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2022-0861 ePO XML extended entity vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-611 3.5 Low 2022-03-23
CVE-2022-0862 ePO password change vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-522 3.1 Low 2022-03-23
CVE-2022-0858 Cross-site scripting vulnerability in ePO — McAfee ePolicy Orchestrator (ePO) CWE-79 4.3 Medium 2022-03-23
CVE-2022-0859 ePO database restoration vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-522 6.5 Medium 2022-03-23
CVE-2022-0857 ePO Reflected Cross-site scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 5.4 Medium 2022-03-23
CVE-2022-0842 ePO blind SQL Injection vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-89 5.4 Medium 2022-03-23
CVE-2021-31834 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 4.8 - 2021-10-22
CVE-2021-31835 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-79 4.8 Medium 2021-10-22
CVE-2021-23890 McAfee ePO Information Leak vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-200 6.5 Medium 2021-03-26
CVE-2021-23888 McAfee ePO unvalidated URL redirect vulnerability — McAfee ePolicy Orchestrator (ePO) CWE-601 6.3 Medium 2021-03-26
CVE-2021-23889 McAfee ePO Cross-site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) 3.5 Low 2021-03-26

This page lists every published CVE security advisory associated with McAfee,LLC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.