Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8948-x7rf-6ghj

Опубликовано: 15 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

McAfee Trial Installer 16.0.53 has Incorrect Access Control that leads to Local Escalation of Privileges.

McAfee Trial Installer 16.0.53 has Incorrect Access Control that leads to Local Escalation of Privileges.

EPSS

Процентиль: 11%
0.00037
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 6.7
nvd
около 1 года назад

Trial installer for McAfee Total Protection (legacy trial installer software) 16.0.53 allows local privilege escalation because of an Uncontrolled Search Path Element. The attacker could be "an adversary or knowledgeable user" and the type of attack could be called "DLL-squatting." The issue only affects execution of this installer, and does not leave McAfee Total Protection in a vulnerable state after installation is completed. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 6.7
fstec
больше 1 года назад

Уязвимость установщика McAfee Direct Stub Installer средства антивирусной защиты McAfee Total Protection, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

EPSS

Процентиль: 11%
0.00037
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-427