First published: Fri Jul 03 2020(Updated: )
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Total Protection | <16.0.r26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-7281 is high with a CVSS score of 6.3.
The Privilege Escalation vulnerability allows local users to delete files they would not have access to by manipulating symbolic links to redirect a McAfee delete action to an unintended file.
Update McAfee Total Protection to version 16.0.R26 or later to fix the Privilege Escalation vulnerability.
More information about CVE-2020-7281 can be found at the following reference link: https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS103062.
CVE-2020-7281 is associated with CWE-269.