Filtered by vendor Mcafee Subscriptions
Total 604 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-3960 1 Mcafee 1 Network Security Manager 2024-11-21 N/A
Exploitation of Authorization vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows authenticated users to gain elevated privileges via a crafted HTTP request parameter.
CVE-2017-3936 1 Mcafee 1 Epolicy Orchestrator 2024-11-21 N/A
OS Command Injection vulnerability in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, 5.3.1, 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows attackers to run arbitrary OS commands with limited privileges via not sanitizing the user input data before exporting it into a CSV format output.
CVE-2017-3912 1 Mcafee 1 Application And Change Control 2024-11-21 N/A
Bypassing password security vulnerability in McAfee Application and Change Control (MACC) 7.0.1 and 6.2.0 allows authenticated users to perform arbitrary command execution via a command-line utility.
CVE-2017-3907 1 Mcafee 1 Mcafee Threat Intelligence Exchange 2024-11-21 N/A
Code Injection vulnerability in the ePolicy Orchestrator (ePO) extension in McAfee Threat Intelligence Exchange (TIE) Server 2.1.0 and earlier allows remote attackers to execute arbitrary HTML code to be reflected in the response web page via unspecified vector.