VendorsMcAfeeenterprise_security_managerany version
Vulnerabilities

McAfee Enterprise Security Manager (ESM) any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2019-3632
Directory Traversal vulnerability could lead to elevated privileges
Published 2019-06-27 · Modified
8.8EPSS 0.017
CVE-2019-3628
Privilege escalation could allow authenticated user to gain access to a core system
Published 2019-06-27 · Modified
8.8EPSS 0.010
CVE-2019-3629
Application protections bypass vulnerability could allow unauthenticated user to impersonate system users
Published 2019-06-27 · Modified
8.3EPSS 0.012
CVE-2019-3630
Command Injection could allow authenticated users to execute arbitrary code
Published 2019-06-27 · Modified
8.0EPSS 0.020
CVE-2019-3631
Command Injection could allow authenticated users to execute arbitrary code
Published 2019-06-27 · Modified
8.0EPSS 0.020
CVE-2015-7704
The ntpd client in NTP 4.x before 4.2.8p4 and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service via a number of crafted "KOD" messages.
Published 2017-08-07 · Modified
7.5EPSS 0.110
CVE-2015-7310
McAfee Enterprise Security Manager (ESM), Enterprise Security Manager/Log Manager (ESMLM), and Enterprise Security Manager/Receiver (ESMREC) before 9.3.2MR18, 9.4.x before 9.4.2MR8, and 9.5.x before 9.5.0MR7 allow remote authenticated users to execute arbitrary OS commands via a crafted filename, which is not properly handled when downloading the file.
Published 2015-09-22 · Modified
6.5EPSS 0.011