Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

McAfee,LLC — Vulnerabilities & Security Advisories 82

Browse all 82 CVE security advisories affecting McAfee,LLC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

McAfee, LLC operates primarily in the endpoint security and threat intelligence sectors, providing antivirus, firewall, and data loss prevention solutions to enterprise and consumer markets. Historical vulnerability records indicate a prevalence of remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from complex legacy codebases and third-party dependencies. These defects frequently allow attackers to bypass authentication or escalate privileges, compromising system integrity. Notable incidents include critical RCE vulnerabilities in McAfee Endpoint Security that enabled unauthorized remote control, highlighting risks associated with high-privilege services. The company has faced scrutiny over data handling practices and past breaches, prompting significant architectural shifts toward cloud-native security models. With 82 recorded CVEs, the firm continues to address legacy technical debt while adapting to evolving threat landscapes, emphasizing the need for rigorous patch management and secure development lifecycle adherence in its extensive product portfolio.

CVE IDTitleCVSSSeverityPublished
CVE-2022-1823 McAfee MCPR privilege escalation — McAfee Consumer Product Removal ToolCWE-269 7.9 High2022-06-20
CVE-2022-1824 McAfee MCPR privilege escalation — McAfee Consumer Product Removal ToolCWE-427 7.9 High2022-06-20
CVE-2022-1254 SWG URL redirection vulnerability — Secure Web GatewayCWE-601 6.1 Medium2022-04-20
CVE-2022-1257 Improper Verification of Cryptographic Signature by McAfee Agent — McAfee AgentCWE-922 6.1 Medium2022-04-14
CVE-2022-1258 SQL injection vulnerability in McAfee Agent's ePO extension — McAfee Agent ePO extensionCWE-89 8.4 High2022-04-14
CVE-2022-1256 Improper Privilege Management in McAfee Agent for Windows — McAfee Agent for WindowsCWE-269 7.8 High2022-04-14
CVE-2022-0861 ePO XML extended entity vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-611 3.5 Low2022-03-23
CVE-2022-0862 ePO password change vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-522 3.1 Low2022-03-23
CVE-2022-0858 Cross-site scripting vulnerability in ePO — McAfee ePolicy Orchestrator (ePO)CWE-79 4.3 Medium2022-03-23
CVE-2022-0859 ePO database restoration vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-522 6.5 Medium2022-03-23
CVE-2022-0857 ePO Reflected Cross-site scripting vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-79 5.4 Medium2022-03-23
CVE-2022-0842 ePO blind SQL Injection vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-89 5.4 Medium2022-03-23
CVE-2021-4088 Blind SQL injection in DLP ePO extension — McAfee Data Loss Prevention (DLP) ePO ExtensionCWE-89 8.4 High2022-01-24
CVE-2022-0166 Privilege escalation vulnerability in McAfee Agent — McAfee Agent for Windows 7.8 High2022-01-19
CVE-2021-31854 Code injection vulnerability in McAfee Agent — McAfee Agent for WindowsCWE-78 7.7 High2022-01-19
CVE-2022-0129 DLL Highjack vulnerability in McAfee TechCheck utility — McAfee TechCheckCWE-427 7.4 High2022-01-11
CVE-2021-31833 Mcafee McAfee Application and Change Control 安全漏洞 — McAfee Application and Change Control (MACC)CWE-269 7.1 High2022-01-04
CVE-2021-4038 NSM vulnerable to XSS — McAfee Network Security Manager (NSM)CWE-79 4.8 Medium2021-12-09
CVE-2021-31850 Denial of Service in Database Security on Windows — McAfee Database Security (DBSec)CWE-552 6.1 Medium2021-12-08
CVE-2021-31851 Cross-Site Scripting vulnerability in Policy Auditor — McAfee Policy AuditorCWE-79 6.1 Medium2021-11-23
CVE-2021-31852 Cross-Site Scripting vulnerability in Policy Auditor — McAfee Policy AuditorCWE-79 6.1 Medium2021-11-23
CVE-2021-31853 MDE DLL Search Order Hijacking vulnerability — McAfee Drive Encryption (MDE)CWE-427 7.8 High2021-11-10
CVE-2021-31834 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-79 4.8 -2021-10-22
CVE-2021-31835 McAfee ePO Cross-Site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-79 4.8 Medium2021-10-22
CVE-2021-23893 Privilege Escalation vulnerability in McAfee Drive Encryption (MDE) — McAfee Drive Encryption (MDE)CWE-269 8.8 High2021-10-01
CVE-2021-31836 Improper Privilege Management in MA for Windows — McAfee Agent for WindowsCWE-269 5.6 Medium2021-09-22
CVE-2021-31847 Improper privilege management in repair process of MA for Windows — McAfee Agent for WindowsCWE-269 8.2 High2021-09-22
CVE-2021-31841 DLL side loading vulnerability in MA for Windows — McAfee Agent for WindowsCWE-426 8.2 High2021-09-22
CVE-2021-31844 Local Privilege Escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for WindowsCWE-120 8.2 High2021-09-17
CVE-2021-31845 Remote Code Execution in McAfee DLP Discover — McAfee Data Loss Prevention (DLP) DiscoverCWE-120 8.4 High2021-09-17

This page lists every published CVE security advisory associated with McAfee,LLC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.