Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to delete or rename programs in the autorun key via manipulation of some parameters.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10309 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-04-15 05:15
Updated : 2020-04-20 13:48
NVD link : CVE-2020-7273
Mitre link : CVE-2020-7273
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
mcafee
- endpoint_security