Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · mcafee

mcafee

· 12 Critical

Total CVEs

605

Critical

12

Products

137

Search All CVEs →

605

Products (137)

epolicy orchestrator86 CVEsweb gateway41 CVEsendpoint security37 CVEsnetwork data loss prevention31 CVEsvirusscan enterprise29 CVEstotal protection27 CVEsdata loss prevention endpoint26 CVEsadvanced threat defense26 CVEsagent25 CVEsemail gateway20 CVEsnetwork security manager19 CVEsgateway13 CVEsscan engine12 CVEsdata loss prevention12 CVEsvirusscan10 CVEsantivirus engine10 CVEsemail and web security10 CVEsmcafee agent10 CVEspolicy auditor9 CVEsenterprise security manager9 CVEsdatabase security8 CVEstrue key8 CVEssecurity scan plus7 CVEsapplication control7 CVEsthreat intelligence exchange server7 CVEsactive response7 CVEsmvision endpoint6 CVEsapplication and change control6 CVEsenterprise mobility manager6 CVEse-business server6 CVEsvulnerability manager6 CVEsprotectionpilot6 CVEscommon management agent5 CVEsdata exchange layer5 CVEsinternet security suite5 CVEsmcafee web gateway4 CVEssaas endpoint protection3 CVEsdrive encryption3 CVEsendpoint detection and response3 CVEschange control3 CVEssecurity webadvisor3 CVEscloud av3 CVEsepolicy orchestrator agent3 CVEsfile and removable media protection3 CVEsvirex3 CVEshost intrusion prevention3 CVEswebadvisor3 CVEsintrushield security management system3 CVEslivesafe3 CVEsapplication change control3 CVEstechcheck2 CVEssuperscan2 CVEsgetsusp2 CVEscma2 CVEsepo deep command2 CVEssmartfilter2 CVEsasset manager2 CVEsenterprise mobility manager agent2 CVEsweb gateway cloud service2 CVEspersonal firewall plus2 CVEswebshield smtp2 CVEsanti-virus plus2 CVEsanti-malware scan engine2 CVEsinternet security2 CVEssecurity center2 CVEsintrushield network security manager2 CVEsnetwork security management2 CVEsepo mcafee virtual technician2 CVEsconsumer product removal tool2 CVEsmcafee virtual technician2 CVEsfile lock2 CVEsendpoint security for linux threat prevention2 CVEscloud single sign on2 CVEsthreat intelligence exchange2 CVEsfreescan2 CVEswireless home network security1 CVEsactive virus defense1 CVEsactive virusscan1 CVEsagent epolicy orchestrator extension1 CVEsantispyware1 CVEsasap virusscan1 CVEsclient proxy1 CVEscloud analysis and deconstructive services1 CVEscloud identity manager1 CVEscommon catalog1 CVEscontent security reporter1 CVEsdata loss prevention discover1 CVEsemail and web security appliance1 CVEsencrypted usb manager1 CVEsendpoint encryption for files and folders1 CVEsendpoint product removal tool1 CVEsendpoint security linux threat prevention1 CVEsentercept agent1 CVEsenterprise security manager\/log manager1 CVEsenterprise security manager\/receiver1 CVEsfirewall reporter1 CVEsgroupshield1 CVEshost data loss prevention1 CVEshost intrusion prevention services1 CVEslinuxshield1 CVEsmanagement of native encryption1 CVEsmcafee enterprise security manager1 CVEsmcafee framework1 CVEsmcafee threat intelligence exchange1 CVEsmcinsctl.dll1 CVEsmvision edr1 CVEsmvision endpoint detection and response1 CVEsneotrace1 CVEsnetschedscan1 CVEsnetwork agent1 CVEsprivacy service1 CVEsquickclean1 CVEsremote desktop 321 CVEssaas control console platform1 CVEssafe connect1 CVEssafeboot device encryption1 CVEssecure mail1 CVEssecurity information and event management1 CVEssecurity installer control system1 CVEssecuritycenter agent1 CVEssecurityshield for email servers1 CVEssecurityshield for microsoft isa server1 CVEssecurityshield for microsoft sharepoint1 CVEssmartfilter administration1 CVEsspamkiller1 CVEstotal protection 20101 CVEstotal protection for endpoint1 CVEstunnelbear1 CVEsunified threat management firewall1 CVEsunified threat management firewall firmware1 CVEsvirus scan enterprise1 CVEsvirusscan commandline1 CVEsvirusscan plus1 CVEsvirusscan security center1 CVEsvirusscan usb1 CVEsvisual trace1 CVEsweb advisor1 CVEs

Recent Vulnerabilities

View all 605
CVE-2016-20050MEDIUM 6.2

NetSchedScan 1.0 contains a buffer overflow vulnerability in the scan Hostname/IP field that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a crafted payload containing 388 bytes of data followed by 4 bytes of EIP overwrite into the Hostname/IP field to trigger a denial of service condition.

CVE-2024-25254CRITICAL 9.8

SuperScan v4.1 was discovered to contain a buffer overflow via the Hostname/IP parameter.

CVE-2023-5445MEDIUM 5.4

An open redirect vulnerability in ePolicy Orchestrator prior to 5.10.0 CP1 Update 2, allows a remote low privileged user to modify the URL parameter for the purpose of redirecting URL request(s) to a malicious site. This impacts the dashboard area of the user interface. A user would need to be logged into ePO to trigger this vulnerability. To exploit this the attacker must change the HTTP payload post submission, prior to it reaching the ePO server.

CVE-2023-5444HIGH 8.0

A Cross Site Request Forgery vulnerability in ePolicy Orchestrator prior to 5.10.0 CP1 Update 2 allows a remote low privilege user to successfully add a new user with administrator privileges to the ePO server. This impacts the dashboard area of the user interface. To exploit this the attacker must change the HTTP payload post submission, prior to it reaching the ePO server.

CVE-2023-40352HIGH 7.2

McAfee Safe Connect before 2.16.1.126 may allow an adversary with system privileges to achieve privilege escalation by loading arbitrary DLLs.

CVE-2023-3946MEDIUM 5.4

A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 SP1 Update 1allows a remote unauthenticated attacker to potentially obtain access to an ePO administrator's session by convincing the authenticated ePO administrator to click on a carefully crafted link. This would lead to limited access to sensitive information and limited ability to alter some information in ePO.

CVE-2023-25134MEDIUM 6.7

McAfee Total Protection prior to 16.0.50 may allow an adversary (with full administrative access) to modify a McAfee specific Component Object Model (COM) in the Windows Registry. This can result in the loading of a malicious payload.

CVE-2023-0978MEDIUM 6.4

A command injection vulnerability in Trellix Intelligent Sandbox CLI for version 5.2 and earlier, allows a local user to inject and execute arbitrary operating system commands using specially crafted strings. This vulnerability is due to insufficient validation of arguments that are passed to specific CLI command. The vulnerability allows the attack

CVE-2023-24579MEDIUM 5.5

McAfee Total Protection prior to 16.0.51 allows attackers to trick a victim into uninstalling the application via the command prompt.

CVE-2023-24578MEDIUM 5.5

McAfee Total Protection prior to 16.0.49 allows attackers to elevate user privileges due to DLL sideloading. This could enable a user with lower privileges to execute unauthorized tasks.

CVE-2023-24577MEDIUM 5.5

McAfee Total Protection prior to 16.0.50 allows attackers to elevate user privileges due to Improper Link Resolution via registry keys. This could enable a user with lower privileges to execute unauthorized tasks.

CVE-2023-0221MEDIUM 4.4

Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrator privileges to bypass the execution controls provided by ACC using the utilman program.

CVE-2022-43751HIGH 7.8

McAfee Total Protection prior to version 16.0.49 contains an uncontrolled search path element vulnerability due to the use of a variable pointing to a subdirectory that may be controllable by an unprivileged user. This may have allowed the unprivileged user to execute arbitrary code with system privileges.

CVE-2022-2188MEDIUM 6.5

Privilege escalation vulnerability in DXL Broker for Windows prior to 6.0.0.280 allows local users to gain elevated privileges by exploiting weak directory controls in the logs directory. This can lead to a denial-of-service attack on the DXL Broker.

CVE-2022-3339MEDIUM 5.4

A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 Update 14 allows a remote unauthenticated attacker to potentially obtain access to an ePO administrator's session by convincing the authenticated ePO administrator to click on a carefully crafted link. This would lead to limited access to sensitive information and limited ability to alter some information in ePO.

CVE-2022-3338MEDIUM 5.4

An External XML entity (XXE) vulnerability in ePO prior to 5.10 Update 14 can lead to an unauthenticated remote attacker to potentially trigger a Server Side Request Forgery attack. This can be exploited by mimicking the Agent Handler call to ePO and passing the carefully constructed XML file through the API.

CVE-2022-2330MEDIUM 6.5

Improper Restriction of XML External Entity Reference vulnerability in DLP Endpoint for Windows prior to 11.9.100 allows a remote attacker to cause the DLP Agent to access a local service that the attacker wouldn't usually have access to via a carefully constructed XML file, which the DLP Agent doesn't parse correctly.

CVE-2022-37025HIGH 7.8

An improper privilege management vulnerability in McAfee Security Scan Plus (MSS+) before 4.1.262.1 could allow a local user to modify a configuration file and perform a LOLBin (Living off the land) attack. This could result in the user gaining elevated permissions and being able to execute arbitrary code due to lack of an integrity check of the configuration file.

CVE-2022-2313HIGH 8.2

A DLL hijacking vulnerability in the MA Smart Installer for Windows prior to 5.7.7, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL into the folder from where the Smart installer is being executed.

CVE-2022-1824HIGH 7.9

An uncontrolled search path vulnerability in McAfee Consumer Product Removal Tool prior to version 10.4.128 could allow a local attacker to perform a sideloading attack by using a specific file name. This could result in the user gaining elevated permissions and being able to execute arbitrary code as there were insufficient checks on the executable being signed by McAfee.

CVE-2022-1823HIGH 7.9

Improper privilege management vulnerability in McAfee Consumer Product Removal Tool prior to version 10.4.128 could allow a local user to modify a configuration file and perform a LOLBin (Living off the land) attack. This could result in the user gaining elevated permissions and being able to execute arbitrary code, through not correctly checking the integrity of the configuration file.

CVE-2022-1254MEDIUM 6.1

A URL redirection vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.9, 9.x prior to 9.2.20, 8.x prior to 8.2.27, and 7.x prior to 7.8.2.31, and controlled release 11.x prior to 11.1.3 allows a remote attacker to redirect a user to a malicious website controlled by the attacker. This is possible because SWG incorrectly creates a HTTP redirect response when a user clicks a carefully constructed URL. Following the redirect response, the new request is still filtered by the SWG policy.

CVE-2022-1258HIGH 8.4

A blind SQL injection vulnerability in the ePolicy Orchestrator (ePO) extension of MA prior to 5.7.6 can be exploited by an authenticated administrator on ePO to perform arbitrary SQL queries in the back-end database, potentially leading to command execution on the server.

CVE-2022-1257MEDIUM 6.1

Insecure storage of sensitive information vulnerability in MA for Linux, macOS, and Windows prior to 5.7.6 allows a local user to gain access to sensitive information through storage in ma.db. The sensitive information has been moved to encrypted database files.

CVE-2022-1256HIGH 7.8

A local privilege escalation vulnerability in MA for Windows prior to 5.7.6 allows a local low privileged user to gain system privileges through running the repair functionality. Temporary file actions were performed on the local user's %TEMP% directory with System privileges through manipulation of symbolic links.