Описание
Improperly implemented security check in McAfee MVISION Endpoint Detection and Response Client (MVEDR) prior to 3.2.0 may allow local administrators to execute malicious code via stopping a core Windows service leaving McAfee core trust component in an inconsistent state resulting in MVEDR failing open rather than closed
Уязвимые конфигурации
Конфигурация 1Версия до 3.2.0 (исключая)
cpe:2.3:a:mcafee:mvision_endpoint_detection_and_response:*:*:*:*:*:*:*:*
EPSS
Процентиль: 16%
0.00051
Низкий
6 Medium
CVSS3
6.7 Medium
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-290
CWE-290
Связанные уязвимости
CVSS3: 6.7
github
больше 3 лет назад
Improperly implemented security check in McAfee MVISION Endpoint Detection and Response Client (MVEDR) prior to 3.2.0 may allow local administrators to execute malicious code via stopping a core Windows service leaving McAfee core trust component in an inconsistent state resulting in MVEDR failing open rather than closed
EPSS
Процентиль: 16%
0.00051
Низкий
6 Medium
CVSS3
6.7 Medium
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-290
CWE-290