CVE-2020-7282: Privilege Escalation vulnerability in McAfee Total Protection (MTP)
Published Jul 3, 2020
·Updated
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.
Affected Software
1 affected component
McAfee Total Protection<16.0.r26
Event History
Jul 3, 2020
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this McAfee Total Protection vulnerability?
The vulnerability ID is CVE-2020-7282.
2
What is the severity of CVE-2020-7282?
The severity of CVE-2020-7282 is high.
3
How does CVE-2020-7282 impact McAfee Total Protection?
CVE-2020-7282 allows local users to delete files they wouldn't have access to by manipulating symbolic links in McAfee Total Protection.
4
Which version of McAfee Total Protection is affected by CVE-2020-7282?
McAfee Total Protection versions up to and including 16.0.R26 are affected by CVE-2020-7282.
5
Is there a fix or patch available for CVE-2020-7282?
Yes, a fix is available. Please refer to the official McAfee advisory for more details.