Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allows an administrator to inject arbitrary code into a debugged McAfee process via manipulation of registry parameters.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10193 | Third Party Advisory |
http://www.securityfocus.com/bid/97958 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2018-04-03 15:29
Updated : 2019-10-09 16:27
NVD link : CVE-2017-4028
Mitre link : CVE-2017-4028
JSON object : View
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
Products Affected
mcafee
- endpoint_security
- virus_scan_enterprise
- host_intrusion_prevention
- anti-virus_plus
- total_protection
- internet_security
microsoft
- windows