Логотип exploitDog
bind:CVE-2020-7346
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-7346

Количество 3

Количество 3

nvd логотип

CVE-2020-7346

почти 5 лет назад

Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-v35m-j976-rqv4

больше 3 лет назад

Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2021-01826

почти 5 лет назад

Уязвимость программного средства защиты конфиденциальных данных McAfee Data Loss Prevention Endpoint для Windows, связанная с небезопасным управлением привилегиями, позволяющая нарушителю осуществить загрузку DLL-библиотек

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-7346

Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.

CVSS3: 7.8
0%
Низкий
почти 5 лет назад
github логотип
GHSA-v35m-j976-rqv4

Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-01826

Уязвимость программного средства защиты конфиденциальных данных McAfee Data Loss Prevention Endpoint для Windows, связанная с небезопасным управлением привилегиями, позволяющая нарушителю осуществить загрузку DLL-библиотек

CVSS3: 7.8
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу