Authentication protection bypass vulnerability in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.0 allows physical local user to bypass the Windows lock screen via DLPe processes being killed just prior to the screen being locked or when the screen is locked. The attacker requires physical access to the machine.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10290 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/109370 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-07-25 10:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-3621
Mitre link : CVE-2019-3621
JSON object : View
CWE
Products Affected
mcafee
- data_loss_prevention_endpoint
microsoft
- windows