CVE-2018-6664
Application Protections Bypass vulnerability in Microsoft Windows in McAfee Data Loss Prevention (DLP) Endpoint before 10.0.500 and DLP Endpoint before 11.0.400 allows authenticated users to bypass the product block action via a command-line utility.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.71%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Application Protections Bypass vulnerability in Microsoft Windows in McAfee Data Loss Prevention (DLP) Endpoint before 10.0.500 and DLP Endpoint before 11.0.400 allows authenticated users to bypass the product block action via a command-line utility.
- CVSS 3.0
- 8.8 HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.71% probability · 52th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-347
- Affected
- mcafee/data loss prevention endpoint
- Source
- trellixpsirt@trellix.com
References
- http://www.securityfocus.com/bid/104299
- http://www.securitytracker.com/id/1040895
- https://kc.mcafee.com/corporate/index?page=content&id=SB10237
- https://kc.mcafee.com/corporate/index?page=content&id=SB10233Vendor Advisory
- http://www.securityfocus.com/bid/104299
- http://www.securitytracker.com/id/1040895
- https://kc.mcafee.com/corporate/index?page=content&id=SB10237
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.