VYPR

Enterprise Security Manager

by McAfee

CVEs (10)

  • CVE-2019-3632HigJun 27, 2019
    risk 0.57cvss 8.8epss 0.02

    Directory Traversal vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to gain elevated privileges via specially crafted input.

  • CVE-2019-3628HigJun 27, 2019
    risk 0.57cvss 8.8epss 0.01

    Privilege escalation in McAfee Enterprise Security Manager (ESM) 11.x prior to 11.2.0 allows authenticated user to gain access to a core system component via incorrect access control.

  • CVE-2015-7704HigAug 7, 2017
    risk 0.50cvss 7.5epss 0.11

    The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of crafted "KOD" messages.

  • CVE-2019-3644HigSep 11, 2019
    risk 0.49cvss 7.5epss 0.02

    McAfee Web Gateway (MWG) earlier than 7.8.2.13 is vulnerable to a remote attacker exploiting CVE-2019-9517, potentially leading to a denial of service. This affects the scanning proxies.

  • CVE-2019-3631HigJun 27, 2019
    risk 0.47cvss 7.2epss 0.02

    Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially crafted parameters.

  • CVE-2019-3630HigJun 27, 2019
    risk 0.47cvss 7.2epss 0.02

    Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially crafted parameters.

  • CVE-2019-3629MedJun 27, 2019
    risk 0.42cvss 6.5epss 0.01

    Application protection bypass vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows unauthenticated user to impersonate system users via specially crafted parameters.

  • CVE-2019-3643MedSep 11, 2019
    risk 0.35cvss 5.3epss 0.02

    McAfee Web Gateway (MWG) earlier than 7.8.2.13 is vulnerable to a remote attacker exploiting CVE-2019-9511, potentially leading to a denial of service. This affects the scanning proxies.

  • CVE-2015-8024Dec 2, 2015
    risk 0.00cvss epss 0.03

    McAfee Enterprise Security Manager (ESM), Enterprise Security Manager/Log Manager (ESMLM), and Enterprise Security Manager/Receiver (ESMREC) 9.3.x before 9.3.2MR19, 9.4.x before 9.4.2MR9, and 9.5.x before 9.5.0MR8, when configured to use Active Directory or LDAP authentication…

  • CVE-2015-7310Sep 22, 2015
    risk 0.00cvss epss 0.01

    McAfee Enterprise Security Manager (ESM), Enterprise Security Manager/Log Manager (ESMLM), and Enterprise Security Manager/Receiver (ESMREC) before 9.3.2MR18, 9.4.x before 9.4.2MR8, and 9.5.x before 9.5.0MR7 allow remote authenticated users to execute arbitrary OS commands via a…