CVE-2019-3667

DLL Search Order Hijacking vulnerability in the Microsoft Windows client in McAfee Tech Check 3.0.0.17 and earlier allows local users to execute arbitrary code via the local folder placed there by an attacker.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mcafee:techcheck:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:42

Type Values Removed Values Added
CVSS v2 : 4.4
v3 : 7.8
v2 : 4.4
v3 : 6.6
References () https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS102996 - () https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS102996 -

07 Nov 2023, 03:10

Type Values Removed Values Added
References (CONFIRM) https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS102996 - Vendor Advisory () https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS102996 -

Information

Published : 2019-12-11 07:15

Updated : 2024-11-21 04:42


NVD link : CVE-2019-3667

Mitre link : CVE-2019-3667

CVE.ORG link : CVE-2019-3667


JSON object : View

Products Affected

mcafee

  • techcheck
CWE
CWE-427

Uncontrolled Search Path Element