CVE-2020-7290: Privilege Escalation vulnerability in MAR for Linux
Published May 8, 2020
·Updated
Privilege Escalation vulnerability in McAfee Active Response (MAR) for Linux prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.
Affected Software
3 affected components
McAfee Active Response<2.4.3
McAfee Active Response=2.4.3
Linux Linux kernel
Event History
May 8, 2020
CVE Published
via MITRE·12:45 PM
Data Sourced
via MITRE·12:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this privilege escalation vulnerability?
The vulnerability ID is CVE-2020-7290.
2
What is the affected software?
The affected software is McAfee Active Response for Linux prior to 2.4.3 Hotfix 1.
3
What is the severity of CVE-2020-7290?
The severity of CVE-2020-7290 is high with a severity value of 7.8.
4
How does CVE-2020-7290 work?
CVE-2020-7290 allows a malicious script or program to perform functions that the local executing user has not been granted access to.
5
How can I fix CVE-2020-7290?
Update to McAfee Active Response for Linux version 2.4.3 Hotfix 1 or later to fix CVE-2020-7290.