CVE-2018-6661: TS102801 True Key DLL Side-Loading vulnerability
Published Apr 2, 2018
·Updated
DLL Side-Loading vulnerability in Microsoft Windows Client in McAfee True Key before 4.20.110 allows local users to gain privilege elevation via not verifying a particular DLL file signature.
Affected Software
4 affected components
McAfee True Key<=4.20
Microsoft Windows
All of the following
McAfee True Key<=4.20
Microsoft Windows
Event History
Apr 2, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6661?
CVE-2018-6661 has been assigned a high severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2018-6661?
To mitigate CVE-2018-6661, update McAfee True Key to version 4.20.110 or later.
3
Who is affected by CVE-2018-6661?
CVE-2018-6661 affects local users running McAfee True Key versions prior to 4.20.110 on Microsoft Windows.
4
What type of vulnerability is CVE-2018-6661?
CVE-2018-6661 is a DLL side-loading vulnerability that allows for privilege elevation.
5
Is CVE-2018-6661 a remote or local vulnerability?
CVE-2018-6661 is classified as a local vulnerability, requiring local user access to exploit.