MEDIUM🇵🇱 Wersja polska

CVE-2020-7325

CVSS 5.5v3.1pub. 2020-09-09upd. 2024-11-21

Privilege Escalation vulnerability in McAfee MVISION Endpoint prior to 20.9 Update allows local users to access files which the user otherwise would not have access to via manipulating symbolic links to redirect McAfee file operations to an unintended file.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
  • Mcafee Mvision Endpoint

    APP
    Mcafee
    < 20.9
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
LPE
CWE
References

Related vulnerabilities

CVE-2020-7328HIGH7.2same product

External entity attack vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows rem...

CVE-2020-7329HIGH7.2same product

Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allow...

CVE-2020-7285HIGH7.8same product

Privilege Escalation vulnerability in McAfee MVISION Endpoint prior to 20.5.0.94 allows a malicious script or ...

CVE-2019-3584HIGH7.4same product

Exploitation of Authentication vulnerability in MVision Endpoint in McAfee MVision Endpoint Prior to 1811 Upda...

CVE-2020-7324MEDIUM6.1same product

Improper Access Control vulnerability in McAfee MVISION Endpoint prior to 20.9 Update allows local users to by...