← back
CVE-2019-3592

MA for Windows update addresses weak directory permissions

CVSS 7.2 HIGHEPSS 0.3%
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.2EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
18 Jul 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3, allows local administrator users to potentially disable some McAfee processes by manipulating the MA directory control and placing a carefully constructed file in the MA directory.
CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →