CVE-2018-6668: Bypass Application Control with simple DLL
Published Dec 31, 2018
·Updated
A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows execution bypass, for example, with simple DLL through interpreters such as PowerShell.
Affected Software
1 affected component
McAfee Application Change Control<=7.0.1
Remediation
Information
Install or update to McAfee Application and Change Control (MACC) Application 8.0.0 and MACC ePO extension 8.0.0 or later.
Event History
Dec 31, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-6668?
CVE-2018-6668 is rated as a high severity vulnerability due to its potential for execution bypass.
2
How do I fix CVE-2018-6668?
To fix CVE-2018-6668, upgrade to McAfee Application Control / Change Control version 7.0.2 or later.
3
What type of vulnerability is CVE-2018-6668?
CVE-2018-6668 is a whitelist bypass vulnerability impacting McAfee Application Control and Change Control.
4
What software versions are affected by CVE-2018-6668?
CVE-2018-6668 affects McAfee Application Control / Change Control versions 7.0.1 and earlier.
5
Can CVE-2018-6668 be exploited through PowerShell?
Yes, CVE-2018-6668 can be exploited using PowerShell by executing unapproved DLLs.