Unrated severityNVD Advisory· Published Apr 1, 2020· Updated Sep 16, 2024
ENS configuration can be edited by attacker with local administrator permissions
CVE-2020-7263
Description
Improper access control vulnerability in ESconfigTool.exe in McAfee Endpoint Security (ENS) for Windows all current versions allows local administrator to alter ENS configuration up to and including disabling all protection offered by ENS via insecurely implemented encryption of configuration for export and import.
Affected products
2- McAfee, LLC/Endpoint Security (ENS) for Windowv5Range: 10.7.x
Patches
Vulnerability mechanics
References
1- kc.mcafee.com/corporate/indexmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.