threat
engine
.sh
Back
·
··:··
Home
/
Product
/
mcafee endpoint security
Product
mcafee endpoint security
97 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2025-5317
< 7.20.52.200087
An improper access restriction to a folder in Bitdefender Endpoint Security Tools for Mac (BEST) before 7.20.52.200087 allows loca
5.5
MEDIUM
CVE-2023-46669
< 8.15.0
Exposure of sensitive information to local unauthorized actors in Elastic Agent and Elastic Security Endpoint can lead to loss of
6.2
MEDIUM
CVE-2024-3779
< 11.1.2039.0
Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render E
6.1
MEDIUM
CVE-2024-2224
all versions
Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability in the UpdateServer component of
8.1
HIGH
CVE-2024-2223
all versions
An Incorrect Regular Expression vulnerability in Bitdefender GravityZone Update Server allows an attacker to cause a Server Side R
8.1
HIGH
CVE-2024-0353
< 8.1.2062.0
Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files withou
7.8
HIGH
CVE-2023-7043
>= 10.1.2046.0 and < 11.0.2032.0
Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with the NT
3.3
LOW
CVE-2023-5594
all versions
Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate sig
7.5
HIGH
CVE-2023-28134
all versions
Local attacker can escalate privileges on affected installations of Check Point Harmony Endpoint/ZoneAlarm Extreme Security. An at
7.8
HIGH
CVE-2023-3160
all versions
The vulnerability potentially allows an attacker to misuse ESET’s file operations during the module update to delete or move fil
7.8
HIGH
CVE-2023-28133
all versions
Local privilege escalation in Check Point Endpoint Security Client (version E87.30) via crafted OpenSSL configuration file
7.8
HIGH
CVE-2023-35800
>= 2.0.0 and <= 2.4.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.4.2 has Insecure Permissions. An ACL entry on the SES Evolution agent dire
4.3
MEDIUM
CVE-2023-35799
>= 2.0.0 and <= 2.3.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.3.2 has Insecure Permissions. An interactive user can use the SES Evolutio
5.5
MEDIUM
CVE-2023-23562
>= 2.3.0 and < 2.4.1
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control that allows an authenticated user can update global
4.3
MEDIUM
CVE-2023-23561
>= 2.3.0 and < 2.4.1
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive information
5.5
MEDIUM
CVE-2022-38777
< 7.17.9
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to
7.8
HIGH
CVE-2022-4304
< 7.2.40
A timing based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext a
5.9
MEDIUM
CVE-2022-38775
< 8.4.1
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to
7.8
HIGH
CVE-2022-38774
< 7.17.7
An issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow
7.8
HIGH
CVE-2022-23744
all versions
Check Point Endpoint before version E86.50 failed to protect against specific registry change which allowed to disable endpoint pr
2.3
LOW
CVE-2022-23714
>= 7.13.0 and <= 7.17.4
A local privilege escalation (LPE) issue was discovered in the ransomware canaries features of Elastic Endpoint Security for Windo
7.8
HIGH
CVE-2022-23742
< e86.40
Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensics reports from a directory wi
7.8
HIGH
CVE-2021-37851
>= 6.0 and < 8.0.2053.0
Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the
7.3
HIGH
CVE-2022-27167
>= 6.0 and < 8.0.2053.0
Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to exploit "Repair" and "Uninstall" f
7.1
HIGH
CVE-2022-27534
< 12.03.2022
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had
9.8
CRITICAL
CVE-2021-27223
< 2021-06
A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky
5.5
MEDIUM
CVE-2021-37852
>= 6.6.2046.0 and < 7.3.2055.0
ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to esca
7.8
HIGH
CVE-2021-30360
< e86.20
Users have access to the directory where the installation repair occurs. Since the MS Installer allows regular users to run the re
7.8
HIGH
CVE-2021-45091
all versions
Stormshield Endpoint Security from 2.1.0 to 2.1.1 has Incorrect Access Control.
4.3
MEDIUM
CVE-2021-45090
>= 2.0.0 and < 2.1.2
Stormshield Endpoint Security before 2.1.2 allows remote code execution.
9.8
CRITICAL
CVE-2021-45089
>= 2.0.0 and < 2.1.2
Stormshield Endpoint Security 2.x before 2.1.2 has Incorrect Access Control.
5.2
MEDIUM
CVE-2021-37850
<= 6.10.910.0
ESET was made aware of a vulnerability in its consumer and business products for macOS that enables a user logged on to the system
5.5
MEDIUM
CVE-2021-35053
>= 11.1.0 and <= 11.6.0
Possible system denial of service in case of arbitrary changing Firefox browser parameters. An attacker could change specific Fire
7.5
HIGH
CVE-2021-31843
< 10.7.0
Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allow
7.3
HIGH
CVE-2021-31842
< 10.7.0
XML Entity Expansion injection vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2021 Update a
5.0
MEDIUM
CVE-2021-35957
>= 2.0.0 and <= 2.0.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.0.2 does not accomplish the intended defense against local administrators
6.7
MEDIUM
CVE-2021-31224
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-only access t
3.5
LOW
CVE-2021-31223
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the administra
5.7
MEDIUM
CVE-2021-31222
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows updating some parts of a security policy by leveraging access to a computer having the administr
5.7
MEDIUM
CVE-2021-31221
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the administr
5.7
MEDIUM
CVE-2021-31220
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to security p
5.2
MEDIUM
CVE-2021-31225
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging access to a co
7.3
HIGH
CVE-2020-7308
<= 10.6.1
Cleartext Transmission of Sensitive Information between McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 U
4.8
MEDIUM
CVE-2020-26200
all versions
A component of Kaspersky custom boot loader allowed loading of untrusted UEFI modules due to insufficient check of their authentic
6.8
MEDIUM
CVE-2021-23881
< 10.7.0
A stored cross site scripting vulnerability in ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 February 2021 Updat
4.8
MEDIUM
CVE-2021-23883
< 10.7.0
A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows
4.0
MEDIUM
CVE-2021-23882
< 10.7.0
Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows lo
8.2
HIGH
CVE-2021-23880
< 10.7.0
Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows aut
6.7
MEDIUM
CVE-2021-23878
< 10.7.0
Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0
7.3
HIGH
CVE-2020-26941
<= 7.3
A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (delet
5.5
MEDIUM
CVE-2020-6021
< e84.20
Check Point Endpoint Security Client for Windows before version E84.20 allows write access to the directory from which the install
7.8
HIGH
CVE-2020-7333
< 10.7.0
Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 U
4.8
MEDIUM
CVE-2020-7332
< 10.6.1
Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November
7.0
HIGH
CVE-2020-7331
< 10.6.1
Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to caus
7.8
HIGH
CVE-2020-6015
all versions
Check Point Endpoint Security for Windows before E84.10 can reach denial of service during clean install of the client which will
5.5
MEDIUM
CVE-2020-6014
< e83.20
Check Point Endpoint Security Client for Windows, with Anti-Bot or Threat Emulation blades installed, before version E83.20, tries
6.5
MEDIUM
CVE-2020-7323
< 10.7.0
Authentication Protection Bypass vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update
6.9
MEDIUM
CVE-2020-7322
< 10.7.0
Information Disclosure Vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows lo
4.7
MEDIUM
CVE-2020-7320
< 10.7.0
Protection Mechanism Failure vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update all
6.7
MEDIUM
CVE-2020-7319
< 10.7.0
Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows l
8.8
HIGH
CVE-2020-8097
< 6.6.18.261
An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK
8.1
HIGH
CVE-2020-8108
< 4.12.80
Improper Authentication vulnerability in Bitdefender Endpoint Security for Mac allows an unprivileged process to restart the main
8.2
HIGH
CVE-2020-7265
>= 10.5.0 and < 10.6.9
Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Mac prior to 10.6.9 allows local users to delete files th
8.8
HIGH
CVE-2020-7264
>= 10.5.0 and < 10.5.5
Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users
8.8
HIGH
CVE-2020-11446
all versions
ESET Antivirus and Antispyware Module 1553 through 1560 allows a user with limited access rights to create hard links in so
7.8
HIGH
CVE-2020-7255
all versions
Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.
3.9
LOW
CVE-2020-7250
all versions
Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows
8.2
HIGH
CVE-2020-7277
all versions
Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allo
6.8
MEDIUM
CVE-2020-7276
all versions
Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Upd
6.4
MEDIUM
CVE-2020-7275
all versions
Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows
4.8
MEDIUM
CVE-2020-7274
all versions
Privilege escalation vulnerability in McTray.exe in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update a
6.6
MEDIUM
CVE-2020-7273
all versions
Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Secur
6.7
MEDIUM
CVE-2020-7261
all versions
Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 Februa
6.1
MEDIUM
CVE-2020-7259
all versions
Exploitation of Privilege/Trust vulnerability in file in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allow
6.6
MEDIUM
CVE-2020-7257
all versions
Privilege escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local
8.4
HIGH
CVE-2020-7278
all versions
Exploiting incorrectly configured access control security levels vulnerability in ENS Firewall in McAfee Endpoint Security (ENS) f
7.4
HIGH
CVE-2020-7263
all versions
Improper access control vulnerability in ESconfigTool.exe in McAfee Endpoint Security (ENS) for Windows all current versions allow
6.5
MEDIUM
CVE-2020-7251
< 10.6.1
Improper access control vulnerability in Configuration Tool in McAfee Endpoint Security (ENS) Prior to 10.6.1 February 2020
5.0
MEDIUM
CVE-2019-16519
<= 6.7.900.0
ESET Cyber Security 6.7.900.0 for macOS allows a local attacker to execute unauthorized commands as root by abusing an undocumente
7.8
HIGH
CVE-2019-3653
>= 10.5.0 and <= 10.5.5
Improper access control vulnerability in Configuration tool in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update
4.6
MEDIUM
CVE-2019-3652
>= 10.5.0 and <= 10.5.5
Code Injection vulnerability in EPSetup.exe in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update allows local use
5.0
MEDIUM
CVE-2019-8461
< e81.30
Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on
7.8
HIGH
CVE-2019-3586
>= 10.0.0 and <= 10.6.1
Protection Mechanism Failure in the Firewall in McAfee Endpoint Security (ENS) 10.x prior to 10.6.1 May 2019 update allows context
7.5
HIGH
CVE-2019-8454
< e80.96
A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows before E80.96
7.0
HIGH
CVE-2019-8452
< e80.96
A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Wind
7.8
HIGH
CVE-2019-3582
<= 10.6.1
Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allows local u
8.6
HIGH
CVE-2017-4028
all versions
Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allow
5.0
MEDIUM
CVE-2016-8010
<= 10.2
Application protections bypass vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and earlier and Endpoint Secur
7.8
HIGH
CVE-2016-9892
all versions
The esets_daemon service in ESET Endpoint Antivirus for macOS before 6.4.168.0 and Endpoint Security for macOS before 6.4.168.0 do
5.9
MEDIUM
CVE-2016-3984
<= 10.0.1
The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) before 1.1.0.161, Agent (MA) 5.x before 5.0.2 Hotfix 1
5.1
MEDIUM
CVE-2014-4973
all versions
The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smar
CVE-2013-5636
all versions
Unlock.exe in Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not associate password failures w
CVE-2013-5635
all versions
Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not properly maintain the state of password fai
CVE-2012-2753
all versions
Untrusted search path vulnerability in TrGUI.exe in the Endpoint Connect (aka EPC) GUI in Check Point Endpoint Security R73.x and
CVE-2006-5647
<= 6.04
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows r
CVE-2006-5646
<= 6.04
Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other
CVE-2006-5645
<= 6.04
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when "E
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin