VYPR
High severity8.2NVD Advisory· Published Sep 10, 2020· Updated Jun 17, 2026

CVE-2020-7314

CVE-2020-7314

Description

Privilege Escalation Vulnerability in the installer in McAfee Data Exchange Layer (DXL) Client for Mac shipped with McAfee Agent (MA) for Mac prior to MA 5.6.6 allows local users to run commands as root via incorrectly applied permissions on temporary files.

Affected products

4
  • McAfee/Agent2 versions
    cpe:2.3:a:mcafee:mcafee_agent:*:*:*:*:*:macos:*:*+ 1 more
    • cpe:2.3:a:mcafee:mcafee_agent:*:*:*:*:*:macos:*:*range: <5.6.6
    • (no CPE)range: < 5.6.6
  • McAfee LLC/McAfee DXL for Mac shipped with MAv5
    Range: 5.6.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.