Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2535▼ 358 respecto a la semana anterior
Críticas / altas1340▲ 76 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
13 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.94% | — | Trellix Application AND Change Control | 27/11/2023 | 17/6/2026 | An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extension, for on-premises ePO servers, prior to version 8.4.0 could lead to an authorised administrator attacker executing arbitrary code through uploading a specially crafted GTI reputation file. The… | |
| Modificada | Media (4.4) | 0.18% | — | Mcafee Application AND Change Control | 13/1/2023 | 17/6/2026 | Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrator privileges to bypass the execution controls provided by ACC using the utilman program. | |
| Modificada | Alta (7.8) | 0.25% | — | Mcafee Application AND Change Control | 4/1/2022 | 17/6/2026 | Potential product security bypass vulnerability in McAfee Application and Change Control (MACC) prior to version 8.3.4 allows a locally logged in attacker to circumvent the application solidification protection provided by MACC, permitting them to run applications that would usually be prevented by MACC. This would… | |
| Modificada | Alta (8.2) | 0.29% | — | Mcafee Application AND Change Control | 15/10/2020 | 17/6/2026 | Improper privilege assignment vulnerability in the installer McAfee Application and Change Control (MACC) prior to 8.3.2 allows local administrators to change or update the configuration settings via a carefully constructed MSI configured to mimic the genuine installer. This version adds further controls for… | |
| Modificada | Media (4.8) | 0.37% | — | Mcafee Application AND Change Control | 26/8/2020 | 17/6/2026 | Cross Site Scripting vulnerability in ePO extension in McAfee Application Control (MAC) prior to 8.3.1 allows administrators to inject arbitrary web script or HTML via specially crafted input in the policy discovery section. | |
| Modificada | Alta (7.8) | 0.41% | — | Mcafee Application AND Change Control | 26/3/2020 | 17/6/2026 | DLL Side Loading vulnerability in the installer for McAfee Application and Change Control (MACC) prior to 8.3 allows local users to execute arbitrary code via execution from a compromised folder. | |
| Modificada | Alta (7.8) | 0.43% | — | Mcafee Application Change Control | 31/12/2018 | 17/6/2026 | A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows execution bypass, for example, with simple DLL through interpreters such as PowerShell. | |
| Modificada | Alta (8) | 0.54% | — | Mcafee Application Change Control | 20/12/2018 | 17/6/2026 | A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows a remote or local user to execute blacklisted files through an ASP.NET form. | |
| Modificada | Alta (7.1) | 0.26% | — | Mcafee Application Change Control | 18/9/2018 | 17/6/2026 | Accessing, modifying, or executing executable files vulnerability in Microsoft Windows client in McAfee Application and Change Control (MACC) 8.0.0 Hotfix 4 and earlier allows authenticated users to execute arbitrary code via file transfer from external system. | |
| Modificada | Alta (7.8) | 0.41% | — | Mcafee Application AND Change Control | 18/9/2018 | 17/6/2026 | Bypassing password security vulnerability in McAfee Application and Change Control (MACC) 7.0.1 and 6.2.0 allows authenticated users to perform arbitrary command execution via a command-line utility. | |
| Modificada | Media (5.5) | 0.36% | — | Mcafee Application ControlMcafee Change Control | 14/3/2017 | 17/6/2026 | A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change Control (MCC) 6.1.0 for Linux and earlier allows authenticated users to change files that are part of write protection rules via specific conditions. | |
| Modificada | Media (5.5) | 0.36% | — | Mcafee Application ControlMcafee Change Control | 14/3/2017 | 17/6/2026 | A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application Control (MAC) 6.1.0 for Linux and earlier allows authenticated users to change binaries that are part of the Application Control whitelist and allows execution of binaries via specific conditions. | |
| Modificada | Media (5) | 0.99% | — | Mcafee Application ControlMcafee Change Control | 22/8/2012 | 16/6/2026 | McAfee Application Control and Change Control 5.1.x and 6.0.0 do not enforce an intended password requirement in certain situations involving attributes of the password file, which allows local users to bypass authentication by executing a command. |