MA for Windows update addresses weak directory permissions
CVE-2019-3592

7.2HIGH

Key Information:

Vendor
CVE Published:
18 July 2019

What is CVE-2019-3592?

Privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3, allows local administrator users to potentially disable some McAfee processes by manipulating the MA directory control and placing a carefully constructed file in the MA directory.

Affected Version(s)

McAfee Agent (MA) 5.x < 5.6.1 HF3

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.