VYPR
High severity7.8NVD Advisory· Published Nov 12, 2020· Updated Jun 17, 2026

CVE-2020-7331

CVE-2020-7331

Description

Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to cause a denial of service and malicious file execution via carefully crafted and named executable files.

Affected products

3
  • cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*range: <10.6.1
    • (no CPE)range: <10.7.0 November 2020 Update
  • McAfee, LLC/McAfee Endpoint Security (ENS)v5
    Range: prior to 10.7.0 November 2020 Update

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.