High severity7.8NVD Advisory· Published Nov 12, 2020· Updated Jun 17, 2026
CVE-2020-7331
CVE-2020-7331
Description
Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local users to cause a denial of service and malicious file execution via carefully crafted and named executable files.
Affected products
3cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*range: <10.6.1
- (no CPE)range: <10.7.0 November 2020 Update
- McAfee, LLC/McAfee Endpoint Security (ENS)v5Range: prior to 10.7.0 November 2020 Update
Patches
Vulnerability mechanics
References
1- kc.mcafee.com/corporate/indexnvdBroken Link
News mentions
0No linked articles in our index yet.