CVE-2021-31843

Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allows local users to access files which they would otherwise not have access to via manipulating junction links to redirect McAfee folder operations to an unintended location.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:-:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:april_2020:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:april_2021:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:february_2020:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:february_2021:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:july_2020:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:june_2021:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:november_2020:*:*:*:windows:*:*
cpe:2.3:a:mcafee:endpoint_security:10.7.0:september_2020:*:*:*:windows:*:*

Information

Published : 2021-09-17 07:15

Updated : 2021-09-30 11:58


NVD link : CVE-2021-31843

Mitre link : CVE-2021-31843


JSON object : View

CWE
CWE-269

Improper Privilege Management

Products Affected

mcafee

  • endpoint_security