Show filters
90 Total Results
Displaying 11-20 of 90
Sort by:
Attacker Value
Unknown
CVE-2021-23886
Disclosure Date: April 15, 2021 (last updated February 22, 2025)
Denial of Service vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a local, low privileged, attacker to cause a BSoD through suspending a process, modifying the processes memory and restarting it. This is triggered by the hdlphook driver reading invalid memory.
0
Attacker Value
Unknown
CVE-2021-23887
Disclosure Date: April 15, 2021 (last updated February 22, 2025)
Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a local, low privileged, attacker to write to arbitrary controlled kernel addresses. This is achieved by launching applications, suspending them, modifying the memory and restarting them when they are monitored by McAfee DLP through the hdlphook driver.
0
Attacker Value
Unknown
CVE-2020-6590
Disclosure Date: April 08, 2021 (last updated February 22, 2025)
Forcepoint Web Security Content Gateway versions prior to 8.5.4 improperly process XML input, leading to information disclosure.
0
Attacker Value
Unknown
CVE-2020-7346
Disclosure Date: March 23, 2021 (last updated February 22, 2025)
Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.
0
Attacker Value
Unknown
CVE-2020-7307
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the RiskDB username and password via unprotected log files containing plain text credentials.
0
Attacker Value
Unknown
CVE-2020-7303
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Cross Site scripting vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote user to trigger scripts to run in a user's browser via adding a new label.
0
Attacker Value
Unknown
CVE-2020-7302
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Unrestricted Upload of File with Dangerous Type in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated attackers to upload malicious files to the DLP case management section via lack of sanity checking.
0
Attacker Value
Unknown
CVE-2020-7305
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Privilege escalation vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows a low privileged remote attacker to create new rule sets via incorrect validation of user credentials.
0
Attacker Value
Unknown
CVE-2020-7304
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Cross site request forgery vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attacker to embed a CRSF script via adding a new label.
0
Attacker Value
Unknown
CVE-2020-7306
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the ADRMS username and password via unprotected log files containing plain text
0