|
264731
|
8.0 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Improper control of generation of code vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote authenticated users to execute arbitrary code via a crafted …
|
CWE-94
Code Injection
|
CVE-2016-8020
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264732
|
6.1 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Cross-site scripting (XSS) vulnerability in attributes in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows unauthenticated remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2016-8019
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264733
|
4.3 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Cross-site request forgery (CSRF) vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to execute unauthorized commands via a cr…
|
CWE-352
Origin Validation Error
|
CVE-2016-8018
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264734
|
4.1 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
Special element injection vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to read files on the webserver via a crafted user…
|
CWE-20
Improper Input Validation
|
CVE-2016-8017
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264735
|
3.4 |
LOW
Network
|
mcafee
|
virusscan_enterprise
|
Information exposure in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to obtain the existence of unauthorized files on the system via a UR…
|
CWE-200
Information Exposure
|
CVE-2016-8016
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264736
|
7.8 |
HIGH
Local
|
mcafee
|
data_loss_prevention_endpoint
|
Access control vulnerability in Intel Security Data Loss Prevention Endpoint (DLPe) 9.4.200 and 9.3.600 allows authenticated users with Read-Write-Execute permissions to inject hook DLLs into other p…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8012
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264737
|
6.1 |
MEDIUM
Network
|
intel_security_mcafee
|
endpoint_security_web_control
|
Cross-site scripting vulnerability in Intel Security McAfee Endpoint Security (ENS) Web Control before 10.2.0.408.10 allows attackers to inject arbitrary web script or HTML via a crafted web site.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8011
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264738
|
7.8 |
HIGH
Local
|
mcafee
|
application_control endpoint_security
|
Application protections bypass vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and earlier and Endpoint Security (ENS) 10.2 and earlier allows local users to bypass local securit…
|
CWE-284
Improper Access Control
|
CVE-2016-8010
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264739
|
7.8 |
HIGH
Local
|
mcafee
|
application_control
|
Privilege escalation vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and 6.x versions allows attackers to cause DoS, unexpected behavior, or potentially unauthorized code executi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8009
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264740
|
8.8 |
HIGH
Local
|
mcafee
|
security_scan_plus
|
Privilege escalation vulnerability in Windows 7 and Windows 10 in McAfee Security Scan Plus (SSP) 3.11.376 allows attackers to load a replacement of the version.dll file via McAfee McUICnt.exe onto a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8008
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|