CVE-2020-7315: DLL Injection vulnerability in MA for Windows
Published Sep 10, 2020
·Updated
DLL Injection Vulnerability in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users to execute arbitrary code via careful placement of a malicious DLL.
Affected Software
1 affected component
McAfee Mcafee Agent Windows<5.6.6
Remediation
Event History
Sep 10, 2020
CVE Published
via MITRE·09:55 AM
Data Sourced
via MITRE·09:55 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this DLL Injection Vulnerability in McAfee Agent?
The vulnerability ID for this DLL Injection Vulnerability in McAfee Agent is CVE-2020-7315.
2
What is the impact of this vulnerability?
This vulnerability allows local users to execute arbitrary code by injecting a malicious DLL.
3
Which version of McAfee Agent is affected by this vulnerability?
McAfee Agent prior to version 5.6.6 is affected by this vulnerability.
4
How can local users exploit this vulnerability?
Local users can exploit this vulnerability by carefully placing a malicious DLL.
5
Is there a fix available for this vulnerability?
Yes, updating McAfee Agent to version 5.6.6 or later will fix this vulnerability.