Vulnerabilities in McAfee,LLC

82 results
Vexday analysis

O portfólio de vulnerabilidades catalogadas da McAfee, LLC soma 82 CVEs, com 3 classificadas como críticas e nenhuma nova entrada nos últimos 90 dias, o que indica um volume relativamente estável no período recente. A taxa de exploração ativa — 1 CVE confirmada no catálogo CISA KEV, representando 1,22% do total — está 2,7 vezes acima da média geral do catálogo, sinalizando uma proporção de ameaças materializadas que merece atenção. A CVE mais perigosa em exploração ativa é CVE-2021-23874, relacionada a gerenciamento inadequado de privilégios, tipo de falha que também corresponde ao CWE mais recorrente no conjunto (CWE-269), sugerindo um padrão estrutural nessa classe de fraqueza. A ausência de PoCs públicas conhecidas limita ligeiramente a superfície de exploração oportunista, mas a presença confirmada de exploração ativa exige que equipes de segurança priorizem a verificação do status de correção dessa CVE em ambientes onde produtos da McAfee ainda estejam em operação.

CVE-2021-31844HIGHLocal Privilege Escalation in McAfee DLP Endpoint for WindowsEPSS 0.4%CVE-2021-31837HIGHOut of bounds write vulnerability in McAfee GetSuspEPSS 0.4%CVE-2020-7326MEDIUMMcAfee MAR - Improperly implemented security checkEPSS 0.4%CVE-2020-7299MEDIUMSensitive Data Exposure vulnerability in McAfee True Key Windows ClientEPSS 0.4%CVE-2020-7346HIGHPrivilege escalation in McAfee DLP Endpoint for WindowsEPSS 0.4%CVE-2022-1824HIGHMcAfee MCPR privilege escalationEPSS 0.3%CVE-2021-31840HIGHDLL preload vulnerability in McAfee Agent for WindowsEPSS 0.3%CVE-2021-23891HIGHPrivilege Escalation vulnerability in McAfee Total Protection (MTP)EPSS 0.3%CVE-2020-7289HIGHPrivilege Escalation vulnerability in MAR for WindowsEPSS 0.3%CVE-2021-31843HIGHImproper access control vulnerability in McAfee ENS for WindowsEPSS 0.3%CVE-2020-7282HIGHPrivilege Escalation vulnerability in McAfee Total Protection (MTP)EPSS 0.3%CVE-2020-7310MEDIUMPrivilege Escalation vulnerability in McAfee Total Protection (MTP) trial installerEPSS 0.3%CVE-2020-7327MEDIUMMcAfee MVEDR - Improperly implemented security checkEPSS 0.3%CVE-2020-7334HIGHImproper privilege assignment vulnerability in the installer component of MACCEPSS 0.3%CVE-2022-0129HIGHDLL Highjack vulnerability in McAfee TechCheck utilityEPSS 0.3%CVE-2020-7330HIGHPrivilege Escalation vulnerability in McAfee Total Protection (MTP) trialEPSS 0.3%CVE-2020-7264HIGHPrivilege Escalation vulnerability through symbolic links in ENS for WindowsEPSS 0.3%CVE-2020-7267HIGHPrivilege Escalation vulnerability through symbolic links in VSELEPSS 0.3%CVE-2020-7265HIGHPrivilege Escalation vulnerability through symbolic links in ENSMEPSS 0.3%CVE-2020-7266HIGHPrivilege Escalation vulnerability through symbolic links in VSE for WindowsEPSS 0.3%