CVE-2020-7279: DLL search order hijacking in Host IPS
DLL Search Order Hijacking Vulnerability in the installer component of McAfee Host Intrusion Prevention System (Host IPS) for Windows prior to 8.0.0 Patch 15 Update allows attackers with local access to execute arbitrary code via execution from a compromised folder.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for the DLL Search Order Hijacking vulnerability in McAfee Host Intrusion Prevention System?
The vulnerability ID for the DLL Search Order Hijacking vulnerability in McAfee Host Intrusion Prevention System is CVE-2020-7279.
What is the severity rating of CVE-2020-7279?
CVE-2020-7279 has a severity rating of 7.8 (high).
How does the DLL Search Order Hijacking vulnerability in McAfee Host Intrusion Prevention System allow attackers to execute arbitrary code?
The DLL Search Order Hijacking vulnerability in McAfee Host Intrusion Prevention System allows attackers with local access to execute arbitrary code by executing from a compromised folder.
Which versions of McAfee Host Intrusion Prevention System are affected by CVE-2020-7279?
Versions 8.0.0 to 8.0.0 Patch 15 Update of McAfee Host Intrusion Prevention System for Windows are affected by CVE-2020-7279.
How can I fix the DLL Search Order Hijacking vulnerability in McAfee Host Intrusion Prevention System?
To fix the DLL Search Order Hijacking vulnerability, you should update McAfee Host Intrusion Prevention System for Windows to version 8.0.0 Patch 15 Update or later.