Improper Access Control in the ENS installer
CVE-2021-23880
6.7MEDIUM
What is CVE-2021-23880?
Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows authenticated local administrator user to perform an uninstallation of the anti-malware engine via the running of a specific command with the correct parameters.
Affected Version(s)
Endpoint Security (ENS) for Windows 10.7.x < 10.7.0 February 2021