CVE-2015-8993: High severity mcafee webadvisor vulnerability
Malicious file execution vulnerability in Intel Security CloudAV (Beta) before 0.5.0.151.3 allows attackers to make the product momentarily vulnerable via executing preexisting specifically crafted malware during installation or uninstallation, but not during normal operation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8993?
CVE-2015-8993 is classified as a medium severity vulnerability.
How do I fix CVE-2015-8993?
To fix CVE-2015-8993, update Intel Security CloudAV to version 0.5.0.151.3 or later.
What are the affected software versions for CVE-2015-8993?
CVE-2015-8993 affects McAfee Security Webadvisor versions 3.7.2, 4.0.1, 4.0.2, as well as McAfee Cloud AV and McAfee Security Scan Plus.
During what operations is CVE-2015-8993 exploitable?
CVE-2015-8993 is exploitable during the installation or uninstallation processes of the affected software.
What kind of attacks can CVE-2015-8993 enable?
CVE-2015-8993 can enable attackers to execute preexisting specifically crafted malware on vulnerable installations.