|
266931
|
10.0 |
CRITICAL
Network
|
mcafee
|
epolicy_orchestrator
|
SQL injection vulnerability in core services in Intel Security McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier allows attackers to alter a SQL query, which can result in dis…
|
CWE-89
SQL Injection
|
CVE-2016-8027
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266932
|
7.8 |
HIGH
Local
|
mcafee
|
security_scan_plus
|
Arbitrary command execution vulnerability in Intel Security McAfee Security Scan Plus (SSP) 3.11.469 and earlier allows authenticated users to gain elevated privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8026
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266933
|
6.2 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
SQL injection vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote authenticated users to obtain product information via a crafted HTTP request paramete…
|
CWE-89
SQL Injection
|
CVE-2016-8025
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266934
|
8.1 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Improper neutralization of CRLF sequences in HTTP headers vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated attacker to obtain sensit…
|
CWE-113
HTTP Response Splitting
|
CVE-2016-8024
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266935
|
8.1 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Authentication bypass by assumed-immutable data vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated attacker to bypass server authentic…
|
CWE-287
Improper Authentication
|
CVE-2016-8023
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266936
|
7.5 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Authentication bypass by spoofing vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated attacker to execute arbitrary code or cause a den…
|
CWE-287
Improper Authentication
|
CVE-2016-8022
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266937
|
5.0 |
MEDIUM
Local
|
mcafee
|
virusscan_enterprise
|
Improper verification of cryptographic signature vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote authenticated users to spoof update server and exe…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2016-8021
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266938
|
8.0 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Improper control of generation of code vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote authenticated users to execute arbitrary code via a crafted …
|
CWE-94
Code Injection
|
CVE-2016-8020
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266939
|
6.1 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Cross-site scripting (XSS) vulnerability in attributes in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows unauthenticated remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2016-8019
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266940
|
4.3 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Cross-site request forgery (CSRF) vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to execute unauthorized commands via a cr…
|
CWE-352
Origin Validation Error
|
CVE-2016-8018
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|