High severity7.8NVD Advisory· Published Mar 23, 2021· Updated Jun 17, 2026
CVE-2020-7346
CVE-2020-7346
Description
Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, low privileged, attacker through the use of junctions to cause the product to load DLLs of the attacker's choosing. This requires the creation and removal of junctions by the attacker along with sending a specific IOTL command at the correct time.
Affected products
3- cpe:2.3:a:mcafee:data_loss_prevention:*:*:*:*:*:windows:*:*Range: <11.6.100
- Range: <11.6.100
- Range: unspecified
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.