Known vulnerabilities in McAfee Endpoint Security (ENS)
Vendor:
McAfee
Software:
McAfee Endpoint Security (ENS)
Software CPE:
cpe:2.3:a:mcafee:mcafee_endpoint_security_ens:*:*:*:*:*:*:*:*
Total vulnerabilities:
10
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (10)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU50732 - Cleartext Storage of Sensitive Information CVE-2021-23878 |
CWE-312 | Low | 10.6.1 February 2021 Update, 10.7.0 February 2021 Update | 16.02.2021 |
SB2021021612 |
||
| #VU50731 - Improper Privilege Management CVE-2021-23882 |
CWE-269 | Low | 10.6.1 February 2021 Update, 10.7.0 February 2021 Update | 16.02.2021 |
SB2021021612 |
||
| #VU50730 - NULL Pointer Dereference CVE-2021-23883 |
CWE-476 | Low | 10.6.1 February 2021 Update, 10.7.0 February 2021 Update | 16.02.2021 |
SB2021021612 |
||
| #VU50729 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-23881 |
CWE-79 | Low | 10.6.1 February 2021 Update, 10.7.0 February 2021 Update | 16.02.2021 |
SB2021021612 |
||
| #VU50728 - Improper Privilege Management CVE-2021-23880 |
CWE-269 | Low | 10.6.1 February 2021 Update, 10.7.0 February 2021 Update | 16.02.2021 |
SB2021021612 |
||
| #VU46690 - Improper Authentication CVE-2020-7323 |
CWE-287 | Low | 10.6.1 September 2020 Update, 10.7.0 September 2020 Update | 14.09.2020 |
SB2020091421 |
||
| #VU46689 - Exposure of sensitive information to an unauthorized actor CVE-2020-7322 |
CWE-200 | Low | 10.6.1 September 2020 Update, 10.7.0 September 2020 Update | 14.09.2020 |
SB2020091421 |
||
| #VU46688 - Protection Mechanism Failure CVE-2020-7320 |
CWE-693 | Low | 10.6.1 September 2020 Update, 10.7.0 September 2020 Update | 14.09.2020 |
SB2020091421 |
||
| #VU46687 - Improper Access Control CVE-2020-7319 |
CWE-284 | Low | 10.6.1 September 2020 Update, 10.7.0 September 2020 Update | 14.09.2020 |
SB2020091421 |
||
| #VU47343 - Improper Link Resolution Before File Access ('Link Following') CVE-2020-7250 |
CWE-59 | Low | 10.7.0 February 2020 Update | 15.04.2020 |
SB2020041527 |