CVE-2014-8518

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
29/10/2014
Last modified:
12/04/2025

Description

The (1) Removable Media and (2) CD and DVD encryption offsite access options (formerly Endpoint Encryption for Removable Media or EERM) in McAfee File and Removable Media Protection (FRP) 4.3.0.x, and Endpoint Encryption for Files and Folders (EEFF) 3.2.x through 4.2.x, uses a hard-coded salt, which makes it easier for local users to obtain passwords via a brute force attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.5.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.6:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.6.3:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.7:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.7.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.8:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:3.2.9.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:4.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mcafee:endpoint_encryption_for_files_and_folders:4.0.1.0:*:*:*:*:*:*:*