VYPR
Medium severity6.7NVD Advisory· Published Feb 10, 2021· Updated Jun 17, 2026

CVE-2021-23880

CVE-2021-23880

Description

Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows authenticated local administrator user to perform an uninstallation of the anti-malware engine via the running of a specific command with the correct parameters.

Affected products

3
  • cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:mcafee:endpoint_security:*:*:*:*:*:windows:*:*range: <10.7.0
    • (no CPE)range: <10.7.0 February 2021 Update
  • McAfee LLC/Endpoint Security (ENS) for Windowsv5
    Range: 10.7.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.