|
266841
|
4.3 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Cross-site request forgery (CSRF) vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to execute unauthorized commands via a cr…
|
CWE-352
Origin Validation Error
|
CVE-2016-8018
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266842
|
4.1 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Special element injection vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to read files on the webserver via a crafted user…
|
CWE-20
Improper Input Validation
|
CVE-2016-8017
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266843
|
3.4 |
LOW
Network
|
mcafee
|
virusscan_enterprise
|
Information exposure in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to obtain the existence of unauthorized files on the system via a UR…
|
CWE-200
Information Exposure
|
CVE-2016-8016
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266844
|
7.8 |
HIGH
Local
|
mcafee
|
data_loss_prevention_endpoint
|
Access control vulnerability in Intel Security Data Loss Prevention Endpoint (DLPe) 9.4.200 and 9.3.600 allows authenticated users with Read-Write-Execute permissions to inject hook DLLs into other p…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8012
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266845
|
6.1 |
MEDIUM
Network
|
intel_security_mcafee
|
endpoint_security_web_control
|
Cross-site scripting vulnerability in Intel Security McAfee Endpoint Security (ENS) Web Control before 10.2.0.408.10 allows attackers to inject arbitrary web script or HTML via a crafted web site.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8011
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266846
|
7.8 |
HIGH
Local
|
mcafee
|
application_control endpoint_security
|
Application protections bypass vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and earlier and Endpoint Security (ENS) 10.2 and earlier allows local users to bypass local securit…
|
CWE-284
Improper Access Control
|
CVE-2016-8010
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266847
|
7.8 |
HIGH
Local
|
mcafee
|
application_control
|
Privilege escalation vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and 6.x versions allows attackers to cause DoS, unexpected behavior, or potentially unauthorized code executi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8009
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266848
|
8.8 |
HIGH
Local
|
mcafee
|
security_scan_plus
|
Privilege escalation vulnerability in Windows 7 and Windows 10 in McAfee Security Scan Plus (SSP) 3.11.376 allows attackers to load a replacement of the version.dll file via McAfee McUICnt.exe onto a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8008
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266849
|
6.3 |
MEDIUM
Local
|
mcafee
|
host_intrusion_prevention_services
|
Authentication bypass vulnerability in McAfee Host Intrusion Prevention Services (HIPS) 8.0 Patch 7 and earlier allows authenticated users to manipulate the product's registry keys via specific condi…
|
CWE-284
Improper Access Control
|
CVE-2016-8007
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266850
|
6.5 |
MEDIUM
Network
|
mcafee
|
email_gateway
|
File extension filtering vulnerability in Intel Security McAfee Email Gateway (MEG) before 7.6.404h1128596 allows attackers to fail to identify the file name properly via scanning an email with a for…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8005
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|