VendorsMcAfeeendpoint_security10.7.0
Vulnerabilities

McAfee Endpoint Security 10.7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2020-7264
Privilege Escalation vulnerability through symbolic links in ENS for Windows
Published 2020-05-08 · Modified
8.8EPSS 0.003
CVE-2021-31843
Improper access control vulnerability in McAfee ENS for Windows
Published 2021-09-17 · Modified
7.8EPSS 0.003
CVE-2020-7263
ENS configuration can be edited by attacker with local administrator permissions
Published 2020-04-01 · Modified
6.7EPSS 0.002
CVE-2020-7308
Transmission of data in clear text by McAfee ENS
Published 2021-04-15 · Modified
6.5EPSS 0.005
CVE-2021-31842
XML Entity Expansion injection vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2021 Update allows a local user to initiate high CPU and memory consumption resulting in a Denial of Service attack through carefully editing the EPDeploy.xml file and then executing the setup process.
Published 2021-09-17 · Modified
5.5EPSS 0.002