CVE-2019-3628: McAfee Enterprise Security Manager

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

Privilege escalation in McAfee Enterprise Security Manager (ESM) 11.x prior to 11.2.0 allows authenticated user to gain access to a core system component via incorrect access control.

Affected products

  • McAfee Enterprise Security Manager: from 11.0.0, before 11.2.0 (fixed in 11.2.0)

Published 2019-06-27. Last modified 2026-06-17.