CVE-2020-7261: Buffer overwrite in ENS allowed to bypass AMSI protection
Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endpoint Security via a carefully crafted user input.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-7261?
CVE-2020-7261 is a vulnerability in the AMSI component in McAfee Endpoint Security (ENS) that allows local users to disable Endpoint Security via a carefully crafted user input.
How severe is CVE-2020-7261?
CVE-2020-7261 has a severity rating of 5.5, which is considered medium.
Which versions of McAfee Endpoint Security are affected by CVE-2020-7261?
McAfee Endpoint Security versions 10.5.0 to 10.6.0 are affected by CVE-2020-7261.
How can I fix the CVE-2020-7261 vulnerability?
To fix the CVE-2020-7261 vulnerability, update your McAfee Endpoint Security to version 10.7.0 February 2020 Update.
Where can I find more information about CVE-2020-7261?
You can find more information about CVE-2020-7261 on the McAfee Knowledge Center website.