First published: Thu Jul 18 2019(Updated: )
Privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3, allows local administrator users to potentially disable some McAfee processes by manipulating the MA directory control and placing a carefully constructed file in the MA directory.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Agent | >=5.0.0<=5.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3592 is a privilege escalation vulnerability in McAfee Agent (MA) before 5.6.1 HF3 that allows local administrator users to potentially disable some McAfee processes.
The affected software is McAfee Agent (MA) before 5.6.1 HF3 on Windows.
The vulnerability can be exploited by manipulating the MA directory control and placing a carefully constructed file in the MA directory.
The severity of CVE-2019-3592 is high with a CVSS score of 6.7.
To fix CVE-2019-3592, upgrade McAfee Agent to version 5.6.1 HF3 or later.