Home/Product/mcafee endpoint security
Product

mcafee endpoint security

97 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-5317
< 7.20.52.200087
An improper access restriction to a folder in Bitdefender Endpoint Security Tools for Mac (BEST) before 7.20.52.200087 allows loca
5.5MEDIUM
CVE-2023-46669
< 8.15.0
Exposure of sensitive information to local unauthorized actors in Elastic Agent and Elastic Security Endpoint can lead to loss of
6.2MEDIUM
CVE-2024-3779
< 11.1.2039.0
Denial of service vulnerability present shortly after product installation or upgrade, potentially allowed an attacker to render E
6.1MEDIUM
CVE-2024-2224
all versions
Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability in the UpdateServer component of
8.1HIGH
CVE-2024-2223
all versions
An Incorrect Regular Expression vulnerability in Bitdefender GravityZone Update Server allows an attacker to cause a Server Side R
8.1HIGH
CVE-2024-0353
< 8.1.2062.0
Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files withou
7.8HIGH
CVE-2023-7043
>= 10.1.2046.0 and < 11.0.2032.0
Unquoted service path in ESET products allows to drop a prepared program to a specific location and run on boot with the NT
3.3LOW
CVE-2023-5594
all versions
Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certificate sig
7.5HIGH
CVE-2023-28134
all versions
Local attacker can escalate privileges on affected installations of Check Point Harmony Endpoint/ZoneAlarm Extreme Security. An at
7.8HIGH
CVE-2023-3160
all versions
The vulnerability potentially allows an attacker to misuse ESET’s file operations during the module update to delete or move fil
7.8HIGH
CVE-2023-28133
all versions
Local privilege escalation in Check Point Endpoint Security Client (version E87.30) via crafted OpenSSL configuration file
7.8HIGH
CVE-2023-35800
>= 2.0.0 and <= 2.4.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.4.2 has Insecure Permissions. An ACL entry on the SES Evolution agent dire
4.3MEDIUM
CVE-2023-35799
>= 2.0.0 and <= 2.3.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.3.2 has Insecure Permissions. An interactive user can use the SES Evolutio
5.5MEDIUM
CVE-2023-23562
>= 2.3.0 and < 2.4.1
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control that allows an authenticated user can update global
4.3MEDIUM
CVE-2023-23561
>= 2.3.0 and < 2.4.1
Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive information
5.5MEDIUM
CVE-2022-38777
< 7.17.9
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to
7.8HIGH
CVE-2022-4304
< 7.2.40
A timing based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext a
5.9MEDIUM
CVE-2022-38775
< 8.4.1
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to
7.8HIGH
CVE-2022-38774
< 7.17.7
An issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow
7.8HIGH
CVE-2022-23744
all versions
Check Point Endpoint before version E86.50 failed to protect against specific registry change which allowed to disable endpoint pr
2.3LOW
CVE-2022-23714
>= 7.13.0 and <= 7.17.4
A local privilege escalation (LPE) issue was discovered in the ransomware canaries features of Elastic Endpoint Security for Windo
7.8HIGH
CVE-2022-23742
< e86.40
Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensics reports from a directory wi
7.8HIGH
CVE-2021-37851
>= 6.0 and < 8.0.2053.0
Local privilege escalation in Windows products of ESET allows user who is logged into the system to exploit repair feature of the
7.3HIGH
CVE-2022-27167
>= 6.0 and < 8.0.2053.0
Privilege escalation vulnerability in Windows products of ESET, spol. s r.o. allows attacker to exploit "Repair" and "Uninstall" f
7.1HIGH
CVE-2022-27534
< 12.03.2022
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had
9.8CRITICAL
CVE-2021-27223
< 2021-06
A denial-of-service issue existed in one of modules that was incorporated in Kaspersky Anti-Virus products for home and Kaspersky
5.5MEDIUM
CVE-2021-37852
>= 6.6.2046.0 and < 7.3.2055.0
ESET products for Windows allows untrusted process to impersonate the client of a pipe, which can be leveraged by attacker to esca
7.8HIGH
CVE-2021-30360
< e86.20
Users have access to the directory where the installation repair occurs. Since the MS Installer allows regular users to run the re
7.8HIGH
CVE-2021-45091
all versions
Stormshield Endpoint Security from 2.1.0 to 2.1.1 has Incorrect Access Control.
4.3MEDIUM
CVE-2021-45090
>= 2.0.0 and < 2.1.2
Stormshield Endpoint Security before 2.1.2 allows remote code execution.
9.8CRITICAL
CVE-2021-45089
>= 2.0.0 and < 2.1.2
Stormshield Endpoint Security 2.x before 2.1.2 has Incorrect Access Control.
5.2MEDIUM
CVE-2021-37850
<= 6.10.910.0
ESET was made aware of a vulnerability in its consumer and business products for macOS that enables a user logged on to the system
5.5MEDIUM
CVE-2021-35053
>= 11.1.0 and <= 11.6.0
Possible system denial of service in case of arbitrary changing Firefox browser parameters. An attacker could change specific Fire
7.5HIGH
CVE-2021-31843
< 10.7.0
Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allow
7.3HIGH
CVE-2021-31842
< 10.7.0
XML Entity Expansion injection vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2021 Update a
5.0MEDIUM
CVE-2021-35957
>= 2.0.0 and <= 2.0.2
Stormshield Endpoint Security Evolution 2.0.0 through 2.0.2 does not accomplish the intended defense against local administrators
6.7MEDIUM
CVE-2021-31224
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-only access t
3.5LOW
CVE-2021-31223
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the administra
5.7MEDIUM
CVE-2021-31222
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows updating some parts of a security policy by leveraging access to a computer having the administr
5.7MEDIUM
CVE-2021-31221
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the administr
5.7MEDIUM
CVE-2021-31220
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to security p
5.2MEDIUM
CVE-2021-31225
>= 2.0.0 and <= 2.0.2
SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging access to a co
7.3HIGH
CVE-2020-7308
<= 10.6.1
Cleartext Transmission of Sensitive Information between McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 U
4.8MEDIUM
CVE-2020-26200
all versions
A component of Kaspersky custom boot loader allowed loading of untrusted UEFI modules due to insufficient check of their authentic
6.8MEDIUM
CVE-2021-23881
< 10.7.0
A stored cross site scripting vulnerability in ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 February 2021 Updat
4.8MEDIUM
CVE-2021-23883
< 10.7.0
A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows
4.0MEDIUM
CVE-2021-23882
< 10.7.0
Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows lo
8.2HIGH
CVE-2021-23880
< 10.7.0
Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows aut
6.7MEDIUM
CVE-2021-23878
< 10.7.0
Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0
7.3HIGH
CVE-2020-26941
<= 7.3
A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (delet
5.5MEDIUM
CVE-2020-6021
< e84.20
Check Point Endpoint Security Client for Windows before version E84.20 allows write access to the directory from which the install
7.8HIGH
CVE-2020-7333
< 10.7.0
Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 U
4.8MEDIUM
CVE-2020-7332
< 10.6.1
Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 November
7.0HIGH
CVE-2020-7331
< 10.6.1
Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to caus
7.8HIGH
CVE-2020-6015
all versions
Check Point Endpoint Security for Windows before E84.10 can reach denial of service during clean install of the client which will
5.5MEDIUM
CVE-2020-6014
< e83.20
Check Point Endpoint Security Client for Windows, with Anti-Bot or Threat Emulation blades installed, before version E83.20, tries
6.5MEDIUM
CVE-2020-7323
< 10.7.0
Authentication Protection Bypass vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update
6.9MEDIUM
CVE-2020-7322
< 10.7.0
Information Disclosure Vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows lo
4.7MEDIUM
CVE-2020-7320
< 10.7.0
Protection Mechanism Failure vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update all
6.7MEDIUM
CVE-2020-7319
< 10.7.0
Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows l
8.8HIGH
CVE-2020-8097
< 6.6.18.261
An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK
8.1HIGH
CVE-2020-8108
< 4.12.80
Improper Authentication vulnerability in Bitdefender Endpoint Security for Mac allows an unprivileged process to restart the main
8.2HIGH
CVE-2020-7265
>= 10.5.0 and < 10.6.9
Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Mac prior to 10.6.9 allows local users to delete files th
8.8HIGH
CVE-2020-7264
>= 10.5.0 and < 10.5.5
Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users
8.8HIGH
CVE-2020-11446
all versions
ESET Antivirus and Antispyware Module 1553 through 1560 allows a user with limited access rights to create hard links in so
7.8HIGH
CVE-2020-7255
all versions
Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.
3.9LOW
CVE-2020-7250
all versions
Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows
8.2HIGH
CVE-2020-7277
all versions
Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allo
6.8MEDIUM
CVE-2020-7276
all versions
Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Upd
6.4MEDIUM
CVE-2020-7275
all versions
Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows
4.8MEDIUM
CVE-2020-7274
all versions
Privilege escalation vulnerability in McTray.exe in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update a
6.6MEDIUM
CVE-2020-7273
all versions
Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Secur
6.7MEDIUM
CVE-2020-7261
all versions
Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 Februa
6.1MEDIUM
CVE-2020-7259
all versions
Exploitation of Privilege/Trust vulnerability in file in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allow
6.6MEDIUM
CVE-2020-7257
all versions
Privilege escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local
8.4HIGH
CVE-2020-7278
all versions
Exploiting incorrectly configured access control security levels vulnerability in ENS Firewall in McAfee Endpoint Security (ENS) f
7.4HIGH
CVE-2020-7263
all versions
Improper access control vulnerability in ESconfigTool.exe in McAfee Endpoint Security (ENS) for Windows all current versions allow
6.5MEDIUM
CVE-2020-7251
< 10.6.1
Improper access control vulnerability in Configuration Tool in McAfee Endpoint Security (ENS) Prior to 10.6.1 February 2020
5.0MEDIUM
CVE-2019-16519
<= 6.7.900.0
ESET Cyber Security 6.7.900.0 for macOS allows a local attacker to execute unauthorized commands as root by abusing an undocumente
7.8HIGH
CVE-2019-3653
>= 10.5.0 and <= 10.5.5
Improper access control vulnerability in Configuration tool in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update
4.6MEDIUM
CVE-2019-3652
>= 10.5.0 and <= 10.5.5
Code Injection vulnerability in EPSetup.exe in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update allows local use
5.0MEDIUM
CVE-2019-8461
< e81.30
Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on
7.8HIGH
CVE-2019-3586
>= 10.0.0 and <= 10.6.1
Protection Mechanism Failure in the Firewall in McAfee Endpoint Security (ENS) 10.x prior to 10.6.1 May 2019 update allows context
7.5HIGH
CVE-2019-8454
< e80.96
A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows before E80.96
7.0HIGH
CVE-2019-8452
< e80.96
A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Wind
7.8HIGH
CVE-2019-3582
<= 10.6.1
Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allows local u
8.6HIGH
CVE-2017-4028
all versions
Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allow
5.0MEDIUM
CVE-2016-8010
<= 10.2
Application protections bypass vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and earlier and Endpoint Secur
7.8HIGH
CVE-2016-9892
all versions
The esets_daemon service in ESET Endpoint Antivirus for macOS before 6.4.168.0 and Endpoint Security for macOS before 6.4.168.0 do
5.9MEDIUM
CVE-2016-3984
<= 10.0.1
The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) before 1.1.0.161, Agent (MA) 5.x before 5.0.2 Hotfix 1
5.1MEDIUM
CVE-2014-4973
all versions
The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smar
CVE-2013-5636
all versions
Unlock.exe in Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not associate password failures w
CVE-2013-5635
all versions
Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not properly maintain the state of password fai
CVE-2012-2753
all versions
Untrusted search path vulnerability in TrGUI.exe in the Endpoint Connect (aka EPC) GUI in Check Point Endpoint Security R73.x and
CVE-2006-5647
<= 6.04
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows r
CVE-2006-5646
<= 6.04
Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other
CVE-2006-5645
<= 6.04
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when "E
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin