Записи McAfee
607 опубликованных записей вендора mcafee.
Профиль для исследователя
- Попали в KEV
- 2 · 0,3 %
- С эксплойтом
- 8 · 1,3 %
- Pre-auth RCE
- 45
- С записью об исправлении
- 12,5 %
- Медиана: публикация → KEV
- 351 дн.
Повторяющиеся классы
- CWE-264 Permissions, Privileges, and Access Controls56
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')52
- CWE-269 Improper Privilege Management31
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor29
- CWE-287 Improper Authentication20
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer17
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
607 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
91Срочно | CVE-2021-3156Готовый эксплойт | Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root sudo project · sudo · CWE-193 | Высокая7,8 | KEV | 100,0 % | 26 янв. 2021 г. |
62На этой неделе | CVE-2006-5156Готовый эксплойт | Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbimcafee · epolicy orchestrator | Критическая10,0 | — | 74,0 % | 5 окт. 2006 г. |
61На этой неделе | CVE-2021-23874Готовый эксплойт | McAfee Total Protection (MTP) privilege escalation vulnerabilitymcafee · total protection · CWE-269 | Высокая7,8 | KEV | 1,0 % | 10 февр. 2021 г. |
56В плане | CVE-2019-9515Эксплойта нет | Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of serviceapple · swiftnio · CWE-400 | Высокая7,5 | — | 87,4 % | 13 авг. 2019 г. |
56В плане | CVE-2020-13935Proof of concept | The payload length in a WebSocket frame was not correctly validated in Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M1 to 9.0.36, 8.5.0 to 8.apache · tomcat · CWE-835 | Высокая7,5 | — | 86,6 % | 14 июл. 2020 г. |
55В плане | CVE-2019-9514Эксплойта нет | Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of serviceapple · swiftnio · CWE-400 | Высокая7,5 | — | 82,8 % | 13 авг. 2019 г. |
54В плане | CVE-2019-9513Эксплойта нет | Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of serviceapple · swiftnio · CWE-400 | Высокая7,5 | — | 81,6 % | 13 авг. 2019 г. |
49В плане | CVE-2004-0932Proof of concept | McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attacca · etrust antivirus | Высокая7,5 | — | 63,6 % | 27 янв. 2005 г. |
48В плане | CVE-2019-9511Proof of concept | Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of serviceapple · swiftnio · CWE-400 | Высокая7,5 | — | 59,5 % | 13 авг. 2019 г. |
47В плане | CVE-2012-1456Эксплойта нет | The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.avg · avg anti-virus · CWE-264 | Средняя4,3 | — | 99,9 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1459Эксплойта нет | The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8ahnlab · v3 internet security · CWE-264 | Средняя4,3 | — | 99,8 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1446Эксплойта нет | The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symanca · etrust vet antivirus · CWE-264 | Средняя4,3 | — | 99,7 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1443Эксплойта нет | The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 2010cat · quick heal · CWE-264 | Средняя4,3 | — | 99,6 % | 21 мар. 2012 г. |
47В плане | CVE-2012-1442Эксплойта нет | The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwascat · quick heal · CWE-264 | Средняя4,3 | — | 98,9 % | 21 мар. 2012 г. |
47В плане | CVE-2006-6707Готовый эксплойт | Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTrmcafee · neotrace | Высокая7,5 | — | 56,2 % | 22 дек. 2006 г. |
46В плане | CVE-2012-1457Эксплойта нет | The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.anti-virus · vba32 · CWE-264 | Средняя4,3 | — | 98,3 % | 21 мар. 2012 г. |
46В плане | CVE-2012-1453Эксплойта нет | The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Treca · etrust vet antivirus · CWE-264 | Средняя4,3 | — | 97,7 % | 21 мар. 2012 г. |
46В плане | CVE-2012-1431Эксплойта нет | The ELF file parser in Bitdefender 7.2, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Secbitdefender · bitdefender · CWE-264 | Средняя4,3 | — | 96,0 % | 21 мар. 2012 г. |
46В плане | CVE-2012-1430Эксплойта нет | The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning Ebitdefender · bitdefender · CWE-264 | Средняя4,3 | — | 96,0 % | 21 мар. 2012 г. |
46В плане | CVE-2012-4598Готовый эксплойт | An unspecified ActiveX control in McAfee Virtual Technician (MVT) before 6.4, and ePO-MVT, allows remote attackers to execute arbitrary codemcafee · mcafee virtual technician | Критическая9,3 | — | 29,4 % | 22 авг. 2012 г. |
45В плане | CVE-2012-1463Эксплойта нет | The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5ahnlab · v3 internet security · CWE-264 | Средняя4,3 | — | 94,2 % | 21 мар. 2012 г. |
45В плане | CVE-2012-1425Эксплойта нет | The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1antiy · avl sdk · CWE-264 | Средняя4,3 | — | 93,2 % | 21 мар. 2012 г. |
45В плане | CVE-2012-1429Эксплойта нет | The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.comodo · comodo antivirus · CWE-264 | Средняя4,3 | — | 92,5 % | 21 мар. 2012 г. |
45В плане | CVE-2012-1461Эксплойта нет | The Gzip file parser in AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, F-Secure Antanti-virus · vba32 · CWE-264 | Средняя4,3 | — | 91,7 % | 21 мар. 2012 г. |
45В плане | CVE-2020-9484Proof of concept | When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a) an attacker is ableapache · tomcat · CWE-502 | Высокая7,0 | — | 55,5 % | 20 мая 2020 г. |
- CVE-2021-315691Срочно
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 100 %sudo project · sudo26 янв. 2021 г.
- CVE-2006-515662На этой неделе
Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbi
КритическаяCVSS 10,0Готовый эксплойтEPSS 74 %mcafee · epolicy orchestrator5 окт. 2006 г.
- CVE-2021-2387461На этой неделе
McAfee Total Protection (MTP) privilege escalation vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 1 %mcafee · total protection10 февр. 2021 г.
- CVE-2019-951556В плане
Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service
ВысокаяCVSS 7,5Эксплойта нетEPSS 87 %apple · swiftnio13 авг. 2019 г.
- CVE-2020-1393556В плане
The payload length in a WebSocket frame was not correctly validated in Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M1 to 9.0.36, 8.5.0 to 8.
ВысокаяCVSS 7,5Proof of conceptEPSS 87 %apache · tomcat14 июл. 2020 г.
- CVE-2019-951455В плане
Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service
ВысокаяCVSS 7,5Эксплойта нетEPSS 83 %apple · swiftnio13 авг. 2019 г.
- CVE-2019-951354В плане
Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service
ВысокаяCVSS 7,5Эксплойта нетEPSS 82 %apple · swiftnio13 авг. 2019 г.
- CVE-2004-093249В плане
McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attac
ВысокаяCVSS 7,5Proof of conceptEPSS 64 %ca · etrust antivirus27 янв. 2005 г.
- CVE-2019-951148В плане
Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of service
ВысокаяCVSS 7,5Proof of conceptEPSS 60 %apple · swiftnio13 авг. 2019 г.
- CVE-2012-145647В плане
The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.
СредняяCVSS 4,3Эксплойта нетEPSS 100 %avg · avg anti-virus21 мар. 2012 г.
- CVE-2012-145947В плане
The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8
СредняяCVSS 4,3Эксплойта нетEPSS 100 %ahnlab · v3 internet security21 мар. 2012 г.
- CVE-2012-144647В плане
The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Syman
СредняяCVSS 4,3Эксплойта нетEPSS 100 %ca · etrust vet antivirus21 мар. 2012 г.
- CVE-2012-144347В плане
The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 2010
СредняяCVSS 4,3Эксплойта нетEPSS 100 %cat · quick heal21 мар. 2012 г.
- CVE-2012-144247В плане
The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwas
СредняяCVSS 4,3Эксплойта нетEPSS 99 %cat · quick heal21 мар. 2012 г.
- CVE-2006-670747В плане
Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTr
ВысокаяCVSS 7,5Готовый эксплойтEPSS 56 %mcafee · neotrace22 дек. 2006 г.
- CVE-2012-145746В плане
The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.
СредняяCVSS 4,3Эксплойта нетEPSS 98 %anti-virus · vba3221 мар. 2012 г.
- CVE-2012-145346В плане
The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Tre
СредняяCVSS 4,3Эксплойта нетEPSS 98 %ca · etrust vet antivirus21 мар. 2012 г.
- CVE-2012-143146В плане
The ELF file parser in Bitdefender 7.2, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Sec
СредняяCVSS 4,3Эксплойта нетEPSS 96 %bitdefender · bitdefender21 мар. 2012 г.
- CVE-2012-143046В плане
The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning E
СредняяCVSS 4,3Эксплойта нетEPSS 96 %bitdefender · bitdefender21 мар. 2012 г.
- CVE-2012-459846В плане
An unspecified ActiveX control in McAfee Virtual Technician (MVT) before 6.4, and ePO-MVT, allows remote attackers to execute arbitrary code
КритическаяCVSS 9,3Готовый эксплойтEPSS 29 %mcafee · mcafee virtual technician22 авг. 2012 г.
- CVE-2012-146345В плане
The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5
СредняяCVSS 4,3Эксплойта нетEPSS 94 %ahnlab · v3 internet security21 мар. 2012 г.
- CVE-2012-142545В плане
The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1
СредняяCVSS 4,3Эксплойта нетEPSS 93 %antiy · avl sdk21 мар. 2012 г.
- CVE-2012-142945В плане
The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.
СредняяCVSS 4,3Эксплойта нетEPSS 92 %comodo · comodo antivirus21 мар. 2012 г.
- CVE-2012-146145В плане
The Gzip file parser in AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, F-Secure Ant
СредняяCVSS 4,3Эксплойта нетEPSS 92 %anti-virus · vba3221 мар. 2012 г.
- CVE-2020-948445В плане
When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a) an attacker is able
ВысокаяCVSS 7,0Proof of conceptEPSS 56 %apache · tomcat20 мая 2020 г.