CVE-2020-7251

Improper access control vulnerability in Configuration Tool in McAfee Mcafee Endpoint Security (ENS) Prior to 10.6.1 February 2020 Update allows local users to disable security features via unauthorised use of the configuration tool from older versions of ENS.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:36

Type Values Removed Values Added
References () https://kc.mcafee.com/corporate/index?page=content&id=SB10299 - () https://kc.mcafee.com/corporate/index?page=content&id=SB10299 -
CVSS v2 : 2.1
v3 : 5.5
v2 : 2.1
v3 : 5.0

07 Nov 2023, 03:25

Type Values Removed Values Added
References (CONFIRM) https://kc.mcafee.com/corporate/index?page=content&id=SB10299 - Vendor Advisory () https://kc.mcafee.com/corporate/index?page=content&id=SB10299 -

Information

Published : 2020-02-14 15:15

Updated : 2024-11-21 05:36


NVD link : CVE-2020-7251

Mitre link : CVE-2020-7251

CVE.ORG link : CVE-2020-7251


JSON object : View

Products Affected

mcafee

  • endpoint_security
CWE
CWE-358

Improperly Implemented Security Check for Standard

CWE-863

Incorrect Authorization