Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 September 2020 Update allows local users to access files which the user otherwise would not have access to via manipulating symbolic links to redirect McAfee file operations to an unintended file.
References
Link | Resource |
---|---|
https://kc.mcafee.com/corporate/index?page=content&id=SB10327 | Vendor Advisory |
Configurations
Information
Published : 2020-09-09 03:15
Updated : 2022-01-01 10:46
NVD link : CVE-2020-7319
Mitre link : CVE-2020-7319
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
mcafee
- endpoint_security