Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

McAfee,LLC — Vulnerabilities & Security Advisories 82

Browse all 82 CVE security advisories affecting McAfee,LLC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

McAfee, LLC operates primarily in the endpoint security and threat intelligence sectors, providing antivirus, firewall, and data loss prevention solutions to enterprise and consumer markets. Historical vulnerability records indicate a prevalence of remote code execution (RCE) and cross-site scripting (XSS) flaws, often stemming from complex legacy codebases and third-party dependencies. These defects frequently allow attackers to bypass authentication or escalate privileges, compromising system integrity. Notable incidents include critical RCE vulnerabilities in McAfee Endpoint Security that enabled unauthorized remote control, highlighting risks associated with high-privilege services. The company has faced scrutiny over data handling practices and past breaches, prompting significant architectural shifts toward cloud-native security models. With 82 recorded CVEs, the firm continues to address legacy technical debt while adapting to evolving threat landscapes, emphasizing the need for rigorous patch management and secure development lifecycle adherence in its extensive product portfolio.

CVE IDTitleCVSSSeverityPublished
CVE-2021-31843 Improper access control vulnerability in McAfee ENS for Windows — McAfee Endpoint Security (ENS) for WIndowsCWE-59 7.3 High2021-09-17
CVE-2021-31842 McAfee Endpoint Security 代码问题漏洞 — McAfee Endpoint Security (ENS) for WIndowsCWE-776 5.0 Medium2021-09-17
CVE-2021-31838 Command injection through environment variable in MVISION EDR — MVISION EDRCWE-78 8.4 High2021-06-29
CVE-2021-31840 DLL preload vulnerability in McAfee Agent for Windows — McAfee Agent for WindowsCWE-427 7.3 High2021-06-10
CVE-2021-31839 Incorrect permissions on McAfee Agent for Windows event folder — McAfee Agent for WindowsCWE-269 4.8 Medium2021-06-10
CVE-2021-31832 Cross site scripting vulnerability in DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for WindowsCWE-79 5.2 Medium2021-06-09
CVE-2021-31837 Out of bounds write vulnerability in McAfee GetSusp — McAfee GetSuspCWE-787 8.8 High2021-06-09
CVE-2021-31830 Cross site Scripting (XSS) vulnerability in McAfee DBSec — McAfee Database Security (DBSec)CWE-79 5.9 Medium2021-06-03
CVE-2021-31831 Incorrect access to deleted scripts vulnerability in McAfee DBSec — McAfee Database Security (DBSec)CWE-552 4.9 Medium2021-06-03
CVE-2021-23896 Cleartext Transmission of Sensitive Information in McAfee DBSec — McAfee Database Security (DBSec)CWE-319 3.2 Low2021-06-02
CVE-2021-23895 Authorized deserialization of untrusted data in McAfee DBSec — McAfee Database Security (DBSec)CWE-502 9.0 Critical2021-06-02
CVE-2021-23894 Unauthorized deserialization of untrusted data in McAfee DBSec — McAfee Database Security (DBSec)CWE-502 9.6 Critical2021-06-02
CVE-2021-23892 Mcafee McAfee Security 后置链接漏洞 — McAfee Endpoint Security (ENS) for LinuxCWE-59 8.2 High2021-05-12
CVE-2021-23872 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP)CWE-59 7.8 High2021-05-12
CVE-2021-23891 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP)CWE-269 7.8 High2021-05-12
CVE-2020-7270 Sensitive Information Exposure in McAfee ATD — McAfee Advanced Threat Defense (ATD)CWE-200 4.9 Medium2021-04-15
CVE-2020-7269 Sensitive Information Exposure in McAfee ATD — McAfee Advanced Threat Defense (ATD)CWE-200 4.9 Medium2021-04-15
CVE-2021-23887 Privilege escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for WindowsCWE-269 7.8 High2021-04-15
CVE-2021-23886 Local Denial of Service in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for WindowsCWE-755 5.5 Medium2021-04-15
CVE-2020-7308 Transmission of data in clear text by McAfee ENS — McAfee Endpoint Security (ENS) for WIndowsCWE-319 4.8 Medium2021-04-15
CVE-2021-23884 Clear text exposure of password in McAfee CSR ePO extension — McAfee Content Security Reporter (CSR)CWE-319 4.3 Medium2021-04-15
CVE-2021-23890 McAfee ePO Information Leak vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-200 6.5 Medium2021-03-26
CVE-2021-23888 McAfee ePO unvalidated URL redirect vulnerability — McAfee ePolicy Orchestrator (ePO)CWE-601 6.3 Medium2021-03-26
CVE-2021-23889 McAfee ePO Cross-site Scripting vulnerability — McAfee ePolicy Orchestrator (ePO) 3.5 Low2021-03-26
CVE-2020-7346 Privilege escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for WindowsCWE-59 7.8 High2021-03-23
CVE-2021-23885 Privilege escalation vulnerability in McAfee Web Gateway (MWG) UI — McAfee Web Gateway (MWG)CWE-269 9.0 Critical2021-02-17
CVE-2021-23874 McAfee Total Protection (MTP) privilege escalation vulnerability — McAfee Total Protection (MTP)CWE-269 8.2 High2021-02-10
CVE-2021-23876 McAfee Total Protection (MTP) Bypass Remote Procedure call vulnerability — McAfee Total Protection (MTP)CWE-269 7.8 High2021-02-10
CVE-2021-23873 McAfee Total Protection (MTP) privilege escalation vulnerability — McAfee Total Protection (MTP)CWE-59 7.8 High2021-02-10
CVE-2020-7335 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP)CWE-269 7.5 High2020-12-01

This page lists every published CVE security advisory associated with McAfee,LLC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.